Skip to content
Search
paperMay 2026Unreviewed

Automatically Attacking Software Reverse Engineering AI Agents

Brian Crawford, Justin Phillips, Patrick McClure

Abstract

Software tools for reverse engineering executable binary files, such as Ghidra, enable malware analysts to safely conduct robust static analysis without having access to original source code. Coupled with the analytic power of large language models (LLM), agentic systems enabled with tools, such as GhidraMCP, can allow analysts to automate a previously human driven process. Although this automation can increase the productivity of a single malware analyst, it also introduces a new area of vulner

Categories

Cite

@misc{crawford2026automatically,
  title = {{Automatically Attacking Software Reverse Engineering AI Agents}},
  author = {Brian Crawford and Justin Phillips and Patrick McClure},
  year = {2026},
  month = may,
  eprint = {2605.30667},
  archivePrefix = {arXiv},
  url = {https://arxiv.org/abs/2605.30667}
}