Gui774ume / ebpfkit
ebpfkit is a rootkit powered by eBPF
☆780Updated last year
Alternatives and similar repositories for ebpfkit:
Users that are interested in ebpfkit are comparing it to the libraries listed below
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆580Updated 7 months ago
- A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.☆1,814Updated 10 months ago
- Linux Kernel Runtime Integrity with eBPF☆173Updated last year
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆127Updated last year
- A Linux Host-based Intrusion Detection System based on eBPF.☆428Updated last year
- libsinsp, libscap, the kernel module driver, and the eBPF driver sources☆256Updated this week
- An eBPF playground☆205Updated last year
- Linux Kernel Hacking☆667Updated 10 months ago
- BTFhub, in collaboration with the BTFhub Archive repository, supplies BTF files for all published kernels that lack native support for em…☆409Updated 2 weeks ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆155Updated 5 months ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆142Updated 3 years ago
- Dectect syscall hooking using eBPF☆145Updated last year
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆287Updated 2 months ago
- ☆298Updated last year
- The BTFhub Archive repository provides BTF files for those published kernels that lack native support for embedded BTF, thereby enhancing…☆105Updated 2 weeks ago
- ☆435Updated 6 months ago
- Scaffolding for BPF application development with libbpf and BPF CO-RE☆1,164Updated this week
- Linux kernel rootkit☆328Updated 3 weeks ago
- An eBPF program debugger☆200Updated 2 years ago
- Credentials Dumper for Linux using eBPF☆1,131Updated 5 months ago
- Userspace eBPF runtime for Observability, Network & General Extensions Framework☆897Updated this week
- eBPF library for Go. Powered by libbpf.☆766Updated last week
- Collection of Linux eBPF slides/documents.☆906Updated last year
- Examples of using BPF ring buffer APIs☆122Updated 4 years ago
- GoRE - Package gore is a library for analyzing Go binaries☆480Updated last week
- Generate eBPF programs and tracing with ChatGPT☆232Updated 6 months ago
- CVE-2022-23222: Linux Kernel eBPF Local Privilege Escalation☆564Updated 2 years ago
- Examples for libbpf, aquasecurity/libbpfgo and cilium/ebpf☆155Updated 2 weeks ago
- A Toolchain to make Build and Run eBPF programs easier☆718Updated 5 months ago
- Linux EDR written in Golang and based on eBPF.☆234Updated 2 years ago