Romain Thomas (@rh0main)
banner
rh0main.bsky.social
Romain Thomas (@rh0main)
@rh0main.bsky.social
Security engineer working on Android, reverse-engineering & obfuscation.

https://www.romainthomas.fr/ - https://obfuscator.re/ - https://lief.re
I'm happy to share that LIEF 0.17.0 is out: lief.re/blog/2025-09...
September 15, 2025 at 3:49 AM
New blog post on implementing patchelf-like functionalities using LIEF's Rust bindings:

lief.re/blog/2025-07...
LIEF patchelf
This blog post introduces a modern LIEF-based version of patchelf
lief.re
July 14, 2025 at 5:09 AM
[Blog Post] New high-level API in LIEF that allows the
creation of DWARF files. Additionally, I present two plugins designed to export
program information from Ghidra and BinaryNinja into a DWARF file.

lief.re/blog/2025-05...

(Bonus: DWARF file detailing my reverse engineering work on DroidGuard)
DWARF as a Shared Reverse Engineering Format
This blog post introduces a new API in LIEF to create DWARF files
lief.re
May 27, 2025 at 1:51 PM
Fuzzing Windows ARM64 binaries with a DBI and LLVM?
Here we go: www.romainthomas.fr/post/25-04-w...
April 28, 2025 at 12:36 PM
New updates in LIEF including better support for PE modifications and ARM64EC/ARM64X binaries.

Blog post: lief.re/blog/2025-02...
February 17, 2025 at 4:30 AM
Reposted by Romain Thomas (@rh0main)
Want to support security researchers from Dragon Sector in covering legal costs piling up after they went public with logic bombs in train firmware?
IBAN for donations is available here:
www.ccc.de/en/updates/2...

Talks for context
media.ccc.de/v/37c3-12142...
streaming.media.ccc.de/38c3/relive/...
December 28, 2024 at 9:29 AM
Reposted by Romain Thomas (@rh0main)
And if you want to know more about the economic reality behind running high availability, actually innovative tech… signal.org/blog/signal-...
Privacy is Priceless, but Signal is Expensive
Signal is the world’s most widely used truly private messaging app, and our cryptographic technologies provide extra layers of privacy beyond the Signal app itself. Since launching in 2013, the Signal...
signal.org
December 11, 2024 at 6:37 PM
LIEF 0.16.0 is out featuring new (extended) capabilities like Dyld Shared Cache support, Assembler/disassembler, ...

lief.re/blog/2024-12...
December 10, 2024 at 11:24 AM
So for my first post on Bluesky, I'm happy to share that LIEF (extended) is now providing an API to disassemble code (backed by the LLVM MC layer).

This disassembler is integrated with other functionalities
like dyldsc or DWARF info.

You can checkout lief.re/doc/latest/e... for the details.
November 23, 2024 at 9:33 AM