Analysing PE executables and their ASLR, DEP, SEH and CFG security flags

In my previous blog post I briefly mentioned the benefit of analysing PE executables, the current file format used for Windows 32-bit and 64-bit executables. That got me coding for half an hour in Python, and in this post I’ll step through how we can answer these kinds of questions. PE files contain a number … Continue reading Analysing PE executables and their ASLR, DEP, SEH and CFG security flags