Windows PE Binary Static Analysis Tool : BinSkim
Windows PE Binary Static Analysis Tool BinSkim is a binary static analysis tool that scans Windows Portable Executable (PE) files for security and correctness. Among the verifications performed by BinSkim are validations that the PE file has opted into all of the binary mitigations offered by the Windows Platform. Some of these mitigations ensure the binary has: SafeSEH enabled for safe exception handling, ASLR enabled so that memory is not laid out in a predictable fashion easier and Stack Protection is enabled to prevent overflow BinSkim is a useful mechanism to ensure that applications are benefiting from all mitigations available today. BinSkim is a checker that examines portable executables and their associated PDBs to identify various security problems. These include: Use of outdated compiler toolsets. Binaries should be compiled against the most recent compiler toolsets wherever possible to maximize use of current compiler-level and OS-provided s...