Acceis / eBPF-hide-PID
This tool have the power to hide any PID/directory in the Linux kernel
☆23Updated 7 months ago
Alternatives and similar repositories for eBPF-hide-PID:
Users that are interested in eBPF-hide-PID are comparing it to the libraries listed below
- kubernetes rootkit☆31Updated last year
- ☆86Updated 9 months ago
- Rust Linux Kernel Module designed for LKM rootkit detection☆39Updated last month
- An eBPF detection program for CVE-2022-0847☆28Updated 2 years ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆57Updated 2 years ago
- A simple Meterpreter stager written in Rust.☆35Updated 6 months ago
- Exploit for CVE-2021-25741 vulnerability☆28Updated 3 years ago
- Open Source eBPF Malware Analysis Framework☆47Updated 5 months ago
- Pure Go rewrite of knockknock☆10Updated 2 years ago
- Use eBPF to inject chaos into local processes☆64Updated 7 months ago
- Kubernetes offensive framework built in eBPF☆37Updated 2 years ago
- ☆49Updated 4 months ago
- Command line interface for (running) BOFs☆44Updated 2 weeks ago
- Dll hijack -- just one macro☆11Updated last year
- eBPF-based EDR for Linux☆17Updated 7 months ago
- Golang Implementation of Hell's gate☆17Updated last year
- Disable SSL certificate verification for all binaries that use libssl☆49Updated 2 years ago
- ☆31Updated 2 years ago
- Loads a program into a memfd and runs it.☆12Updated 2 years ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- ebpf covert channel rootkit☆14Updated last year
- A basic exemple of the API-Hashing method used by Red Teamers but also by malwares developers in C++☆36Updated last year
- monitor and protect SSH sessions with eBPF☆68Updated 3 years ago
- NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection☆29Updated last year
- A collection of bypasses and exploits for eBPF-based cloud security.☆21Updated last year
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆129Updated 2 years ago
- BYOVD collection☆23Updated last year
- A collection of source code, binaries, and compilation scripts designed to bypass detection☆25Updated 2 years ago
- ☆16Updated 7 months ago
- Asynchronous NFSv3 client in pure Python☆26Updated last month