Orest V. Iftime

43 papers C 4Journal 15Unranked 24
YearRankTypeTitle / Venue / Authors
2026 J jnl
IEEE Trans. Autom. Control.
Tudor C. Ionescu, Orest V. Iftime, Radu Stefan
2025 conf
ECC
M. Ogyz Yegin, Orest V. Iftime, Hitay Özbay, Tudor C. Ionescu
2025 conf
CDC
Tudor C. Ionescu, Orest V. Iftime, Ion Necoara
2024 conf
MED
Tudor C. Ionescu, Orest V. Iftime, Ion Necoara
2024 conf
CDC
X. Cheng, Tudor C. Ionescu, Orest V. Iftime, Ion Necoara
2023 C conf
ACC
Orest V. Iftime, Michael A. Demetriou, Sergiy Zhuk
2023 conf
ECC
Tudor C. Ionescu, Orest V. Iftime, Radu Stefan
2023 conf
ECC
Yu Kawano, Tudor C. Ionescu, Orest V. Iftime
2022 J jnl
Autom.
Tudor C. Ionescu, Orest V. Iftime, Ion Necoara
2021 J jnl
Syst. Control. Lett.
Sergiy Zhuk, Orest V. Iftime, Jonathan P. Epperlein, Andrei Polyakov
2021 conf
CDC
Michael A. Demetriou, Orest V. Iftime, Sergiy Zhuk
2020 J jnl
Syst. Control. Lett.
Hans Zwart, Kirsten A. Morris, Orest V. Iftime
2020 conf
ECC
Tudor C. Ionescu, Orest V. Iftime, Ion Necoara
2019 conf
ECC
Tudor C. Ionescu, Orest V. Iftime, Qing-Chang Zhong
2018 conf
ECC
Tudor C. Ionescu, Orest V. Iftime
2018 conf
CDC
Jonathan P. Epperlein, Orest V. Iftime, Sergiy Zhuk, Andrey Polyakov
2017 J jnl
Autom.
Ruth F. Curtain, Hans Zwart, Orest V. Iftime
2017 J jnl
Autom.
Orest V. Iftime
2016 conf
CDC
Orest V. Iftime
2016 J jnl
Autom.
Orest V. Iftime
2015 conf
ECC
Tudor Corneliu Ionescu, Orest V. Iftime
2014 conf
CDC
Orest V. Iftime, Adrian Sandovici
2013 conf
ECC
Orest V. Iftime, Tudor C. Ionescu
2012 J jnl
Autom.
Orest V. Iftime
2012 C conf
ACC
Tudor Corneliu Ionescu, Orest V. Iftime
2011 C conf
ACC
Orest V. Iftime, Adrian Sandovici
2010 conf
CDC
Orest V. Iftime
2010 J jnl
Autom.
Ruth F. Curtain, Orest V. Iftime, Hans Zwart
2009 conf
CDC
Ruth F. Curtain, Orest V. Iftime, Hans Zwart
2009 J jnl
Autom.
Orest V. Iftime, Michael A. Demetriou
2009 J jnl
Autom.
Ruth F. Curtain, Orest V. Iftime, Hans Zwart
2008 conf
CDC
Ruth F. Curtain, Orest V. Iftime, Hans Zwart
2007 J jnl
Int. J. Intell. Syst. Technol. Appl.
Orest V. Iftime, Michel Verhaegen
2007 conf
CDC
Orest V. Iftime, Michael A. Demetriou
2005 C conf
ACC
Michael A. Demetriou, Orest V. Iftime
2005 conf
ALaRT
Orest V. Iftime, Michel Verhaegen
2005 conf
CDC/ECC
Orest V. Iftime, Adrian Sandovici, Goran Golo
2004 conf
CDC
Mark R. Opmeer, Orest V. Iftime
2004 J jnl
Syst. Control. Lett.
Orest V. Iftime, Amol J. Sasane
2003 conf
CDC
Orest V. Iftime, Ruth F. Curtain, Hans Zwart
2002 J jnl
Syst. Control. Lett.
Orest V. Iftime, Hans Zwart
2001 conf
ECC
Orest V. Iftime, Hans Zwart
2001 J jnl
Syst. Control. Lett.
Orest V. Iftime, Hans Zwart
redb/extractors/decompiler/_archive/DecompileGhidra-old.py
← Index redb/extractors/decompiler/_archive/DecompileGhidra-old.py python
from hashlib import sha256
import inspect
from pathlib import Path
import subprocess
import json
import subprocess
import json
import os
import tempfile
import uuid
import shutil
import time

from dotenv import load_dotenv

from redb.extractors.enum import Tag
from redb.models.dataclasses import Decompiled
from redb.extractors.extractor import Extractor


class DecompileGhidra(Extractor):
    def __init__(
        self,
        filepath,
        log,
        index_prefix=None,
        elastic_index=None,
        known_benign=False,
        known_malicious=False,
    ):
        super().__init__(
            filepath, log, index_prefix, elastic_index, known_benign, known_malicious
        )
        self.log.debug(inspect.currentframe().f_code.co_name)
        self.elastic_index = self.index_prefix + "-ghidra"
        self.ghidra_path = "/opt/ghidra"
        self.java_script_path = (
            self.ghidra_path
            + "/Ghidra/Features/Base/ghidra_scripts/GhidraDecompilerScript.java"
        )
        self.decompiled = None
        load_dotenv()
        self.decompiled_folder = os.getenv("DECOMPILED_FOLDER", "/opt/decompiled")
        self.log.debug(f"Decompiled folder: {self.decompiled_folder}")

    def run_command(self, cmd, env=None):
        try:
            self.log.info(f"Starting command: {' '.join(cmd)}")
            start_time = time.time()
            TIMEOUT = 1200  # 20 minutes in seconds
            process = subprocess.Popen(
                cmd, env=env, stdout=subprocess.PIPE, stderr=subprocess.PIPE, text=True
            )

            while True:
                output = process.stdout.readline()
                if output:
                    print(output.strip())
                if process.poll() is not None:
                    break
            try:
                stdout, stderr = process.communicate(timeout=TIMEOUT)
            except subprocess.TimeoutExpired:
                process.kill()
                self.log.error(f"Ghidra timed out after {TIMEOUT} seconds")
                # raise subprocess.TimeoutExpired(process.args, TIMEOUT)
                return None
            end_time = time.time()

            self.log.debug(
                f"Command finished. Execution time: {end_time - start_time:.2f} seconds"
            )
            self.log.debug(f"Return code: {process.returncode}")

            if process.returncode != 0:
                self.log.error(f"Error output:\n{stderr}")
                return None
            return stdout
        except Exception as e:
            self.log.error(f"Error running command {' '.join(cmd)}: {e}")
            return None

    def analyze_binary(self):
        self.log.debug(f"Ghidra path: {self.ghidra_path}")
        self.log.debug(f"Binary path: {self.filepath}")
        self.log.debug(f"Java script path: {self.java_script_path}")

        # Check if Java script exists
        if not os.path.exists(self.java_script_path):
            self.log.error(f"Error: Java script not found at {self.java_script_path}")
            return None

        # Set up environment variables
        env = os.environ.copy()
        java_home = "/usr/lib/jvm/java-17-openjdk-amd64"  # Adjust this path if needed
        env["JAVA_HOME"] = java_home
        env["PATH"] = f"{java_home}/bin:{env['PATH']}"
        env["LD_LIBRARY_PATH"] = f"{java_home}/lib:{env.get('LD_LIBRARY_PATH', '')}"
        env["DECOMPILED_FOLDER"] = self.decompiled_folder

        # Print environment variables for debugging
        self.log.debug(f"JAVA_HOME: {env['JAVA_HOME']}")
        self.log.debug(f"PATH: {env['PATH']}")
        self.log.debug(f"LD_LIBRARY_PATH: {env['LD_LIBRARY_PATH']}")

        # Check Ghidra installation
        analyzeHeadless_path = f"{self.ghidra_path}/support/analyzeHeadless"
        self.log.debug(
            f"analyzeHeadless exists: {os.path.exists(analyzeHeadless_path)}"
        )

        # Create a temporary project directory
        project_path = tempfile.gettempdir() + "/ghidra_" + str(uuid.uuid4())
        os.makedirs(project_path, exist_ok=True)
        self.log.debug(f"Created temporary project path: {project_path}")
        output_file = ""

        try:
            # Run Ghidra's headless analyzer
            analyze_cmd = [
                analyzeHeadless_path,
                project_path,
                "TempProject",
                "-import",
                self.filepath,
                "-postScript",
                self.java_script_path,
                self.sha256,
                "-deleteProject",
            ]

            result = self.run_command(analyze_cmd, env=env)
            if result is None:
                return None

            # Read the output JSON file
            output_file = os.path.join(
                self.decompiled_folder, self.sha256 + "-decompiled.json"
            )
            if os.path.exists(output_file):
                with open(output_file, "r") as f:
                    functions = json.load(f)
                return functions
            else:
                self.log.error(
                    f"Output file {output_file} not found. Ghidra analysis may have failed."
                )
                return None
        finally:
            # Clean up
            if os.path.exists(project_path):
                shutil.rmtree(project_path)
                self.log.debug(f"Deleted temporary project path: {project_path}")

    def extract(self):
        self.log.debug(inspect.currentframe().f_code.co_name)
        try:
            functions = self.analyze_binary()

            if functions:
                self.log.info(f"Extracted functions from {self.filepath}:")
                for func in functions:
                    id = sha256(func["address"].encode()).hexdigest()
                    self.decompiled = Decompiled(
                        _id=id,
                        decompiled_function_name=func["name"],
                        decompiled_function_address=func["address"],
                        decompiled_function=func["decompiled"],
                    )
                    self.export_to_elastic([self.decompiled])
            else:
                self.log.error("No decompiled functions extracted.")
            return True
        except Exception as e:
            self.log.error(f"Error extracting decompiled information: {e}")
            return None

    def tag(self):
        return Tag.DECOMPILED.value