This tool have the power to hide any PID/directory in the Linux kernel
☆30Sep 13, 2024Updated last year
Alternatives and similar repositories for eBPF-hide-PID
Users that are interested in eBPF-hide-PID are comparing it to the libraries listed below
Sorting:
- Simple root privilege escalation detection using eBPF 🐝☆35Feb 10, 2026Updated 3 weeks ago
- Ran is an experimental offensive tool for Kubernetes clusters with the goal to enable quick emulation of adversary techniques and a colle…☆30Updated this week
- ☆14Mar 18, 2025Updated 11 months ago
- python3 scripts to help with aws triage needs☆15Feb 11, 2022Updated 4 years ago
- Execute binaries straight from memory, without touching disk, with a friendly interface!☆48Nov 15, 2024Updated last year
- Collection of incidents resulting from caching issues☆29Jun 3, 2025Updated 9 months ago
- ☆22Jul 24, 2025Updated 7 months ago
- Linux kernel programming examples☆21Dec 2, 2024Updated last year
- OpenVPN Connect for Windows (MSI) - 3.1.0.361 - Privilege Escalation☆26Feb 28, 2020Updated 6 years ago
- Shared library injection for *nix using ptrace, in Rust.☆24Aug 13, 2024Updated last year
- Publications from the eBPF foundation☆28Dec 3, 2025Updated 3 months ago
- Run Go tests on a custom kernel☆32Jan 26, 2026Updated last month
- An In-memory Embedding of CPython☆31May 24, 2021Updated 4 years ago
- An eBPF🐝 Keylogger with C2-based RCE payload delivery☆307May 12, 2025Updated 9 months ago
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆34May 21, 2024Updated last year
- kubernetes rootkit☆34Dec 18, 2023Updated 2 years ago
- ☆34Apr 18, 2020Updated 5 years ago
- monitor and protect SSH sessions with eBPF☆73Jul 2, 2021Updated 4 years ago
- 内网横向利用工具,用于ssh wmiexec等常规服务,也可以当作一个数据库执行命令工具☆68May 15, 2023Updated 2 years ago
- Read PostgreSQL data files without credentials - forensics, data recovery, and security research tool☆35Jan 18, 2026Updated last month
- eBPF OOM Memory Profiler☆129Dec 2, 2025Updated 3 months ago
- Cross-Platform process-aware tcpdump☆40Apr 16, 2025Updated 10 months ago
- ☆34Jan 31, 2016Updated 10 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆139Dec 26, 2023Updated 2 years ago
- 🔬 eBPF / libbpf bindings for Node.js☆35Mar 12, 2022Updated 3 years ago
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆39May 5, 2024Updated last year
- 该漏洞存在于 NtQueryInformationToken 函数中,特别是在处理AuthzBasepCopyoutInternalSecurityAttributes 函数时,该漏洞源于内核在操作对象时对锁定机制的不当管理,这一失误可能导致恶意实体意外提升权限。☆40Jul 5, 2024Updated last year
- [DEPRECATED] contains the old "fork" build approach for cpython. New project is at https://github.com/allyourcodebase/cpython☆35Jul 20, 2025Updated 7 months ago
- Unicode Security Toolkit☆40Oct 7, 2024Updated last year
- Monitor Git repositories for new commits☆40Feb 26, 2026Updated last week
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆684Jul 7, 2024Updated last year
- CVE-2022-26135☆11Jul 12, 2022Updated 3 years ago
- Unofficial AppImage of mpv [Maintainer=@Samueru-sama]☆11Updated this week
- 鉴穹日志安全分析系统☆18Sep 7, 2025Updated 5 months ago
- Tools for diffing and comparing web content. Also includes a web server that makes diffs available as an HTTP service.☆18Feb 20, 2026Updated last week
- Packet Monkey is a tool to filter and classify PCAPs using Wireshark filters