Emulation & Symbolic ExecutionCLI Flag:
--emu unicornUnicorn Enginein REA
Lightweight multi-architecture CPU emulator framework based on QEMU.
AI Overview Direct AnswerUnicorn Engine Integration in REA
In REA (rea-agents), Unicorn Engine is integrated via --emu unicorn to enable AI coding agents to inspect application binaries, extract symbol tables, generate pseudocode, and trace execution boundaries without source code.
Supported Platforms & Targets
Host Operating Systems:
macOSLinuxWindows
Target Architectures:
ARM / ARM64MIPSx86 / x86_64SPARCRISC-V
Tool Overview & Role
Unicorn Engine isolates and executes snippets of compiled machine code without booting an entire OS. It allows security analysts to execute suspicious shellcode, unpack obfuscated routines, and simulate cross-architecture binary blocks (e.g. executing ARM64 code on an x86 host) with full memory control.
REA Bridge Mechanism
Wraps Unicorn's multi-arch execution core. REA sets up virtual CPU registers, maps isolated memory pages with stack/heap bounds, steps through target assembly blocks, and observes register mutations to reverse-engineer mathematical algorithms.
Key Capabilities
Isolated instruction and basic-block level CPU simulation
Cross-architecture execution (ARM, MIPS, RISC-V on x86)
Memory read/write hooks and register state capture
Safe sandboxed execution of obfuscated unpacking loops
CLI Usage Examples
Execute direct terminal analysis with --emu unicorn:
rea unicorn example
rea emulate ./snippet.bin --arch arm64 --entry 0x1000
unicorn-emu -a x86 -m 32 -b payload.raw