Acceis / eBPF-hide-PIDLinks
This tool have the power to hide any PID/directory in the Linux kernel
☆30Updated last year
Alternatives and similar repositories for eBPF-hide-PID
Users that are interested in eBPF-hide-PID are comparing it to the libraries listed below
Sorting:
- Rust Linux Kernel Module designed for LKM rootkit detection☆56Updated 9 months ago
- ☆89Updated last month
- eBPF hacks☆194Updated last year
- Open Source eBPF Malware Analysis Framework☆54Updated last year
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆167Updated last year
- ☆63Updated 2 years ago
- Use eBPF to inject chaos into local processes☆67Updated last year
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆136Updated 7 months ago
- Kubernetes offensive framework built in eBPF☆39Updated 2 years ago
- nysm is a stealth post-exploitation container.☆264Updated 6 months ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆59Updated 3 years ago
- io_uring based rootkit☆246Updated 8 months ago
- An eBPF detection program for CVE-2022-0847☆28Updated 3 years ago
- WallEscape vulnerability in util-linux☆51Updated last year
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆139Updated 2 years ago
- Userland exec PoC to be used as attack vector technique☆93Updated 2 months ago
- kubernetes rootkit☆34Updated 2 years ago
- A collection of bypasses and exploits for eBPF-based cloud security.☆25Updated last year
- Make your programs stealthier🐝☆197Updated 6 months ago
- Tiny embeddable dns server☆55Updated this week
- A simple Meterpreter stager written in Rust.☆45Updated 2 months ago
- PoC and Detection for CVE-2024-21626☆75Updated last year
- KeyTrap (DNSSEC)☆44Updated last year
- ☆31Updated 2 years ago
- eBPF-based EDR for Linux☆18Updated last year
- Signing-key abuse and update exploitation framework☆132Updated 7 months ago
- ☆88Updated last year
- A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs☆334Updated 6 months ago
- Monarch - The Adversary Emulation Toolkit☆63Updated last year
- Post-exploit a compromised etcd, gain persistence and remote shell to nodes.☆90Updated last year