3intermute / arm64_silent_syscall_hook
silent syscall hooking without modifying sys_call_table/handlers via patching exception handler
☆115Updated 4 months ago
Related projects: ⓘ
- system call hooking on arm64 linux via a variety of methods☆40Updated 2 years ago
- 内核硬件调试器模块,rootkit操作 dump☆29Updated 2 years ago
- A rootkit for Android.☆35Updated 3 months ago
- A kernel module to read and write memory in a remote process.☆39Updated 3 weeks ago
- Kernel mode to user mode so injection☆74Updated 3 years ago
- linux(android) payload module☆23Updated 8 months ago
- Deobfuscate OLLVM Bogus Control Flow via angr☆60Updated 2 years ago
- ☆51Updated 2 years ago
- 去除BR混淆 Deobfuscation BR☆29Updated 3 months ago
- 跨平台模拟执行unicorn框架基于Qemu的TCG模式(Tiny Code Generator),以无硬件虚拟化支持方式实现全系统的虚拟化,支持跨平台和架构的CPU指令模拟,本文讨论是一款笔者的实验性项目采用Windows Hypervisor Platform虚拟机模式…☆63Updated 9 months ago
- IDA Python Script for anti ollvm☆95Updated 3 years ago
- ☆46Updated last year
- ☆45Updated this week
- IDA Pro plugin that displays all comments in a database☆56Updated last month
- 反ida内联汇编花指令☆50Updated last year
- A program to read and modify the memory of other processes.☆16Updated last year
- ollvm de-obfuscator☆56Updated 3 years ago
- Another LLVM-obfuscator based on LLVM-17. A fork of Arkari☆59Updated 7 months ago
- monitor svc calls of android☆71Updated 6 years ago
- 本工具用于解决ollvm编译出来的Linux驱动文件,加载进内核会报错“please compile with -fno-common”的问题☆26Updated 3 years ago
- LLVM PASS by SsageParuders.Port to llvm_14.06 with New PM.Support for Android-ndk-r25(LTS).☆145Updated last year
- linux kernel inline hook☆107Updated last year
- Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA☆115Updated 9 months ago
- An approach to utilize auditd under Android 6+☆21Updated 6 years ago
- Utils use to dump android ELF from memory and do some fix including the ELF section header rebuilding☆54Updated last year
- Arm64 inline hooking for iOS, Android, OSX, and Linux.☆44Updated last month
- IDA Pro plugin AntiXorstr☆87Updated last year
- fork 自 https://gitlab.com/eshard/d810 添加了参考文章、测试样本,作为备份。☆12Updated 2 years ago
- Mirror of https://gitee.com/SmartSmallBoy/hardware-breakpoint☆24Updated 3 months ago
- Stealth patch for Frida, stealth knowledge collection☆45Updated last month