PE address spaces
File offsets, relative virtual addresses, and the boundary between inspection and loading.
A small systems laboratory.
Built from the inside out.
Software, reverse engineering, and the structures underneath. A growing body of work, research, and references by Jesus Chavez.
PRJ-001 / ACTIVE DEVELOPMENT
Looking inside
Windows executables.
A Windows executable is a set of decisions written into bytes. Loupe is how I’m learning to read them.
Where does
this address live?
VA = base + RVAFile bytes and virtual memory have different coordinates. A small distinction that the loader has to get right.
Follow the address model ↗File offsets, relative virtual addresses, and the boundary between inspection and loading.
Separating a PE image model from the machinery that executes it.
03 / PERMANENT REFERENCE SET
Not inspiration. More like obligations.
The standard I am trying to meet.
REF-C / 1984
We disdained all existing software
Project Trinity is the independent work of Jesus Chavez, a software engineer studying systems, reverse engineering, and security.
Previously: backend and distributed systems at John Deere Financial and Fubo Gaming.