从指令集到二进制逻辑:补齐底层安全技能

很多后端开发者在处理网络攻击防御、恶意代码分析或底层性能优化时,常感到“只知其然不知其所以然”。本课程直击 x64 汇编语言与逆向工程的核心,解决你无法看懂二进制程序逻辑、无法手动分析算法实现的问题。课程从最基础的寄存器操作(如 INC, DEC, NEG)讲起,逐步深入到标志位(CF, ZF, OF)的判断、位运算(AND, OR, XOR)以及复杂的跳转与循环逻辑。它不依赖晦涩的学术理论,而是结合 x64dbg 调试器,带你从零构建对计算机底层运行机制的认知。

适合基础:需要从“黑盒”走向“白盒”的开发者

本课程适合具备一定 C/C++ 基础,但从未接触过汇编或逆向工程的开发者。如果你习惯于使用高级语言开发,却对程序在内存中究竟如何执行感到困惑,这门课非常适合你。建议先从第 1、2 节了解虚拟机环境搭建,随后重点掌握第 11、12 节的标志位与位运算,这是理解后续复杂逻辑控制的前提。不需要你有黑客背景,只需要你有耐心去跟踪每一条指令的执行流程。

学完能独立做什么:手动还原算法与逻辑分析

学完本课程后,你应能独立完成以下工作:使用 x64dbg 打开任意 64 位可执行文件,手动跟踪程序的执行路径;理解 If-Else、While、Do-While 等高级控制流在汇编层是如何通过 CMP、TEST 和条件跳转实现的;能够分析数组在内存中的布局以及 LEA 指令的用法。更重要的是,你将获得一种“上帝视角”,能够透过源代码看到底层的二进制逻辑,从而在遇到异常行为或安全问题时,拥有更敏锐的排查能力。

配套练习:在虚拟机中复现每一步操作

光看不练无法掌握逆向。请务必在安装好虚拟机和调试器后,跟随视频中的操作一步步暂停、单步执行。对于第 13 节的跳转指令和第 15 节的乘除运算,建议尝试在调试器中手动输入指令并观察寄存器变化,直到你能凭记忆写出对应的汇编逻辑为止。不要急于求成,逆向工程是一场与计算机底层对话的持久战。

课程目录

1. Introduction
1. Introduction.mp4 73.80M
2. Installing Virtual Machine and x64dbg.mp4 46.79M
10. INC, DEC, NEG, ADD and SUB
1. INC and DEC.mp4 60.05M
2. NEG.mp4 45.86M
3. ADD and SUB.mp4 108.67M
11. Register Flags
1. Intro to the Register Flags.mp4 41.93M
2. CF Flag.mp4 48.55M
3. OF Flag.mp4 70.09M
4. SF Flag.mp4 29.10M
5. ZF Flag.mp4 24.75M
12. Bitwise Logical Operations
1. Introduction to Bitwise Logical Operations.mp4 24.32M
2. AND Operations.mp4 87.41M
3. OR Operations.mp4 108.16M
4. XOR Operations.mp4 79.17M
5. Flags Register.mp4 74.68M
6. NOT Operation.mp4 27.14M
13. Jump Instructions
1. Introduction to Jumps.mp4 6.75M
10. WHILE Loops.mp4 142.27M
11. DO-WHILE Loops.mp4 125.59M
2. JMP Instructions.mp4 167.08M
3. TEST Instructions.mp4 121.31M
4. CMP Instructions.mp4 51.51M
5. Conditional Jumps.mp4 179.62M
6. Signed Conditional Jumps.mp4 128.58M
7. Implementing If Statements.mp4 118.76M
8. Implementing If-Else Statements.mp4 146.25M
9. Multiple IF tests.mp4 144.97M
14. Memory Arrays
1. Introduction to arrays in x64dbg.mp4 87.76M
2. Looping through an array.mp4 126.42M
3. LEA Instructions.mp4 120.01M
15. MUL and DIV instructions
1. MUL instructions.mp4 74.29M
2. DIV Instructions.mp4 60.81M
3. IMUL Instructions.mp4 79.21M
16. Creating Functions
1. The Stack.mp4 179.33M
2. Creating Stackframes, CALL and RET instructions.mp4 74.15M
3. Calling Conventions.mp4 51.26M
4. Simple Function Call with 4 args and no local variables.mp4 102.71M
5. Function Call with 4 args and 4 local variables.mp4 157.07M
6. Function Call with 5 args.mp4 114.85M
7. Function Call with 6 args.mp4 156.88M
8. Function Call with 7 args.mp4 205.51M
17. Practicals on Reverse Engineering
1. Introduction to the Practicals.mp4 38.93M
1.1 die_win64_portable_3.09_x64.zip 19.67M
2. How to check exe type.mp4 94.34M
2.1 01-easiest crackme.zip 163.43kb
18. Phishing for Passwords
1. Phishing for Passwords.mp4 38.07M
19. How to reverse a jump and patch the file
1. How to reverse a jump and patch the file.mp4 49.80M
2. Intro to x64 architecture
1. Why use a Debugger for learning Assembly Language.mp4 56.44M
1.1 why use debugger.zip 122.03kb
2. x64 instructions.mp4 44.93M
2.1 x64_template.zip 127.78kb
20. The Comment Tracing method
1. The Comment Tracing method.mp4 222.02M
21. Patch exe to change password
1. How to directly access memory to modify password and patch the exe file.mp4 74.28M
22. GUI Crackme Techniques
1. Enabling a disabled greyed out button.mp4 56.01M
1.1 03-Ser-Me.zip 215.07kb
1.2 resource_hacker.zip 3.02M
2. How to remove a Nag Message Box.mp4 63.32M
3. Patching to accept any serial key and also to modify the message box.mp4 115.90M
23. Deep Tracing Username and Password
1. Tracing username.mp4 358.09M
2. Tracing password.mp4 93.31M
24. Tracing EAX values and Stepping into Calls
1. Tracing EAX values.mp4 117.16M
2. Patching to show the Right Message.mp4 52.07M
25. Get the password