Unstripping Cloud Container ELF Binaries

Jonathan Brossard · 2025

Evaluating the security of containers, as part of the supply chain of Cloud services, has become compulsory with the European Directive NIS2. The binaries used within containers are typically stripped, meaning they do not possess debug symbols, making the evaluation of their security posture more complex. This article focuses on automated ways to recover some of this critical debugging information, a process named unstripping, on Linux x86_64 binaries, such as those presently overwhelmingly used within containers.

Read the paper · More papers on PaperTik