存档

2010年12月 的存档

How to code debuggers

2010年12月8日 评论已被关闭

How debuggers work

  • System call ptrace lets processes control other processes.
  • Binaries in ELF format include a lot of useful information.
  • Calls to library functions get resolved only when the program runs. It’s very easy
    to make them point to our functions instead.
  • Compilers emit a lot of useful debugging information in DWARF format.
  • /proc/ contains a lot of information about running programs.
分类: debugger theory 标签: