macOS
brew install ghidralocal Homebrew formula metadata
sudo port install ghidraMacPorts ports tree · devel/ghidra/Portfile · source: api.github.com
brew / rank 1006
Multi-platform software reverse engineering framework. Version 12.1.2 via Homebrew; verified 2026-06-05. Also installable with nix: nix profile install nixpkgs#ghidra.
install
brew install ghidralocal Homebrew formula metadata
sudo port install ghidraMacPorts ports tree · devel/ghidra/Portfile · source: api.github.com
sudo apk add ghidraAlpine Linux edge package indexes · ghidra · source: dl-cdn.alpinelinux.org
nix profile install nixpkgs#ghidranixpkgs package indexes · ghidra · source: raw.githubusercontent.com
sudo pacman -S ghidraArch Linux sync databases · ghidra · source: geo.mirror.pkgbuild.com
choco install ghidraChocolatey community package catalog · ghidra · source: community.chocolatey.org
scoop install extras/ghidraScoop official bucket manifest trees · bucket/ghidra.json · source: api.github.com
overview
Multi-platform software reverse engineering framework
history
Ghidra is NSA's open-source software reverse engineering framework, combining disassembly, decompilation, graphing, scripting, collaboration, and extension development across many processor architectures and executable formats.
NSA publicly released Ghidra at the 2019 RSA Conference after years of research and development aimed at difficult software reverse engineering mission problems. The project README says it was built to solve scaling and teaming problems on complex analysis efforts and to provide a customizable research platform.
NSA described the public reaction as overwhelming after release, with hundreds of thousands of downloads and millions of website views in the first days. Four years later, NSA reported more than one million public downloads, use in college curricula, books and videos, operational use by technology and cybersecurity companies, and community contributions through GitHub.
Practitioners use Ghidra interactively for reverse engineering compiled code and in automated modes for batch analysis. Common workflows include importing binaries, disassembling and decompiling functions, using the Sleigh processor specification language and P-code model, writing Java or Python scripts, and building extensions.
Ghidra became significant to security packagers because a high-end reverse engineering suite moved from a government internal tool to a redistributable Apache-licensed project. The official release packaging is a multi-platform zip rather than a traditional installer, which made package-manager formulas and wrappers valuable for users who prefer reproducible installs.
security posture
escape, surveillance, or offensive capability signal.
red risk · medium confidence · escape-surveillance-offensive
Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.
executables
| Command | Kind | Exposure | Note |
|---|---|---|---|
ghidraRun | executable | indexed executable | Discovered from the local executable index. |
pyghidraRun | executable | indexed executable | Discovered from the local executable index. |
freshness
These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.
install metadata
| Package key | brew:ghidra |
|---|---|
| Version | 12.1.2 |
| Package manager | Homebrew |
| Homepage | https://github.com/NationalSecurityAgency/ghidra |
| Repository | https://github.com/NationalSecurityAgency/ghidra |
| Last updated | 2026-06-05T21:47:28Z |
| Pulse | updated |
| Bottle | not recorded |
| Service | none declared |
source database matches
Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.
ghidra
nix profile install nixpkgs#ghidraghidra 12.1.2-r0
A Cross Platform and Open Source Electronics Design Automation Suite
sudo apk add ghidraghidra-doc 12.1.2-r0
A Cross Platform and Open Source Electronics Design Automation Suite (documentation)
sudo apk add ghidra-docghidra-tutorials 12.1.2-r0
Ghidra tutorial files
sudo apk add ghidra-tutorialsghidra 12.1.2-2
Software reverse engineering framework
sudo pacman -S ghidraghidra
sudo port install ghidraghidra
choco install ghidraextras/ghidra
scoop install extras/ghidrasource trail
This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.
View the package source record on GitHub.