Static Kernel Analysis with objdump & nm

Linux Kernel Debugging and Analysis · 3:58

Listen on 93

Lyrics

[Verse 1]
When the kernel sleeps in storage now
We can peek inside and see just how
No runtime needed, system's down
Just static tools to look around
objdump and nm will be your friends
To see how kernel magic blends

[Chorus]
objdump with d for disassembly
nm for symbols, easy to see
Static analysis, safe and sound
No execution, knowledge found
Read the sections, map the flow
Everything you need to know

[Verse 2]
Symbol tables tell the story true
Functions and variables come in view
nm with D shows dynamic links
While nm with g finds global things
Text and data sections laid out clean
The clearest kernel map you've seen

[Chorus]
objdump with d for disassembly
nm for symbols, easy to see
Static analysis, safe and sound
No execution, knowledge found
Read the sections, map the flow
Everything you need to know

[Bridge]
Flag t for symbol types displayed
Flag s shows sections neatly made
Cross-reference calls with flag x
Find dependencies, no more complex
From entry points to exit calls
Static view reveals it all

[Verse 3]
Architecture matters, choose your way
ARM or x86, don't go astray
objdump with S mixes source with code
Making sense of the kernel's load
Security analysis starts right here
With static tools, the path is clear

[Chorus]
objdump with d for disassembly
nm for symbols, easy to see
Static analysis, safe and sound
No execution, knowledge found
Read the sections, map the flow
Everything you need to know

[Outro]
Before you boot, before you run
Static analysis gets things done
Kernel secrets, plain to see
With objdump and nm mastery

← Kernel Module Debugging Techniques | Kernel Tracing with ftrace & trace-cmd →