Emulation & Symbolic ExecutionCLI Flag: --emu unicorn

Unicorn Enginein REA

Lightweight multi-architecture CPU emulator framework based on QEMU.

AI Overview Direct AnswerUnicorn Engine Integration in REA

In REA (rea-agents), Unicorn Engine is integrated via --emu unicorn to enable AI coding agents to inspect application binaries, extract symbol tables, generate pseudocode, and trace execution boundaries without source code.

Supported Platforms & Targets

Host Operating Systems:
macOSLinuxWindows
Target Architectures:
ARM / ARM64MIPSx86 / x86_64SPARCRISC-V

Tool Overview & Role

Unicorn Engine isolates and executes snippets of compiled machine code without booting an entire OS. It allows security analysts to execute suspicious shellcode, unpack obfuscated routines, and simulate cross-architecture binary blocks (e.g. executing ARM64 code on an x86 host) with full memory control.

REA Bridge Mechanism

Wraps Unicorn's multi-arch execution core. REA sets up virtual CPU registers, maps isolated memory pages with stack/heap bounds, steps through target assembly blocks, and observes register mutations to reverse-engineer mathematical algorithms.

Key Capabilities

Isolated instruction and basic-block level CPU simulation
Cross-architecture execution (ARM, MIPS, RISC-V on x86)
Memory read/write hooks and register state capture
Safe sandboxed execution of obfuscated unpacking loops

CLI Usage Examples

Execute direct terminal analysis with --emu unicorn:

rea unicorn example
rea emulate ./snippet.bin --arch arm64 --entry 0x1000
unicorn-emu -a x86 -m 32 -b payload.raw