一个基于uprobe,能同时hook大量用户地址空间函数的kpm内核模块
☆186Feb 13, 2026Updated 2 weeks ago
Alternatives and similar repositories for Kernel-Trace
Users that are interested in Kernel-Trace are comparing it to the libraries listed below
Sorting:
- 一个通过控制指定内存段权限设置而实现阻止app自身inline hook行为的内核模块☆39Mar 13, 2025Updated 11 months ago
- GirlHook is a Lua-scriptable ART hook framework designed for dynamic method interception and gadget-level instrumentation on Android. G.I…☆200Jul 17, 2025Updated 7 months ago
- ☆147Sep 9, 2025Updated 5 months ago
- Android assembly instruction tracing tool☆142Apr 17, 2025Updated 10 months ago
- 劫持Zygote在App启动前注入so☆347Jan 22, 2026Updated last month
- apatch kpm 模块通用内核读写内存 linux kernel read only support ARM64(based apatch)☆64Jan 13, 2026Updated last month
- My own tools for developing kernel modules☆15Sep 23, 2025Updated 5 months ago
- 允许您全局修改传感器的值,无需注入特定app以防被检测☆65May 28, 2025Updated 9 months ago
- AntiOllvm Fla with Fake Runtime☆182Jan 8, 2025Updated last year
- apatch内核模块 用于文件重定向☆75Mar 19, 2025Updated 11 months ago
- A Kernel module to break the kernel read-only to modify the syscall_table purpose (only in the Linux Arm64 6.6 Kernel test runs properly)…☆41Feb 2, 2025Updated last year
- eBPF-based lightweight debugger for Android☆755Dec 27, 2025Updated 2 months ago
- Android system call hook☆228Jan 22, 2025Updated last year
- 一个自定义注入so的脚 手架,现在已经支持了界面化使用。☆612Dec 26, 2025Updated 2 months ago
- A Simple uprobe Hook Framework☆68Apr 1, 2025Updated 10 months ago
- 一个用于对unity il2cpp框架开发的安卓端手游进行trace的so模块☆59Jan 24, 2026Updated last month
- 对目标函数进行trace 只适用于 arm64☆167Aug 30, 2025Updated 5 months ago
- 关于Magisk生态的研究☆160Apr 29, 2024Updated last year
- APatch KernelPatch QEMU Debug Environment☆21Sep 9, 2024Updated last year
- Android aarch64 kernel driver module providing efficient memory operations, touch simulation and IPC. Features include fast memory remapp…☆97Aug 25, 2025Updated 6 months ago
- A library for hiding and retrieving imports in ELF binaries.☆192Apr 18, 2025Updated 10 months ago
- A demo app to detect Zygote injections☆111Jan 29, 2026Updated 3 weeks ago
- A binder interceptor framework for Android☆366Jun 24, 2024Updated last year
- 自定义linker加载so☆202Jun 12, 2025Updated 8 months ago
- 一个用于检测安卓app自身是否被uprobe挂载的示例项目☆27Jul 4, 2025Updated 7 months ago
- 一个Android通用svc跟踪以及hook方案——Frida-Seccomp☆648May 14, 2024Updated last year
- ☆387Mar 29, 2025Updated 11 months ago
- vmtrace的发布仓库,相关so 调用脚本例子都会放在里面☆538Dec 26, 2025Updated 2 months ago
- Android arm arm64-v8a ShellCode Generate☆30Jul 13, 2025Updated 7 months ago
- A rootkit for Android.☆63Jun 6, 2024Updated last year
- Overt是一款功能强大的Android设备安全检测工具☆215Jan 19, 2026Updated last month
- 一个用于抹去ptrace注入部分文件特征的apatch内核模块☆55Oct 21, 2025Updated 4 months ago
- 一个用于隐藏apatch root挂载文件特征的内核模块☆99Feb 26, 2025Updated last year
- A comprehensive plug-in injection toolset☆42Jan 29, 2026Updated 3 weeks ago
- Tenet的修复版本,支持了ida9.0,增加了类似LLDB的调试逻辑,优化了界面,增加了arm64的支持,以及ALSR部分的重写☆249Jan 23, 2026Updated last month
- 研究内核改机策略☆69Mar 13, 2024Updated last year
- System Call Hook for ARM64☆212Jan 19, 2026Updated last month
- Frida-Sigaction-Seccomp实现对Android APP系统调用的拦截☆127Jan 26, 2024Updated 2 years ago
- ☆64Jul 21, 2025Updated 7 months ago