Gui774ume / ebpfkitLinks
ebpfkit is a rootkit powered by eBPF
☆802Updated 2 years ago
Alternatives and similar repositories for ebpfkit
Users that are interested in ebpfkit are comparing it to the libraries listed below
Sorting:
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆626Updated last year
- A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.☆1,872Updated last year
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆133Updated 2 years ago
- Linux Kernel Runtime Integrity with eBPF☆179Updated last year
- An eBPF playground☆206Updated last year
- A Linux Host-based Intrusion Detection System based on eBPF.☆441Updated last year
- Linux Kernel Hacking☆719Updated last year
- BTFhub, in collaboration with the BTFhub Archive repository, supplies BTF files for all published kernels that lack native support for em…☆439Updated this week
- Red-Team Linux kernel rootkit☆512Updated 2 months ago
- Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.☆1,626Updated last year
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆294Updated 7 months ago
- libsinsp, libscap, the kernel module driver, and the eBPF driver sources☆276Updated last week
- bpflock - eBPF driven security for locking and auditing Linux machines☆148Updated 3 years ago
- ☆304Updated 2 years ago
- ☆454Updated 3 weeks ago
- Dectect syscall hooking using eBPF☆156Updated 2 years ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆159Updated 10 months ago
- The BTFhub Archive repository provides BTF files for those published kernels that lack native support for embedded BTF, thereby enhancing…☆120Updated 3 weeks ago
- Scaffolding for BPF application development with libbpf and BPF CO-RE☆1,288Updated 3 weeks ago
- Linux Kernel hooking engine (x86)☆350Updated 7 months ago
- CVE-2022-23222: Linux Kernel eBPF Local Privilege Escalation☆571Updated 3 years ago
- Linux EDR written in Golang and based on eBPF.☆241Updated 3 years ago
- A Toolchain to make Build and Run eBPF programs easier☆763Updated 10 months ago
- Redress - A tool for analyzing stripped Go binaries☆1,085Updated this week
- Using ftrace for function hooking in Linux kernel☆275Updated 4 years ago
- GoRE - Package gore is a library for analyzing Go binaries☆503Updated this week
- Credentials Dumper for Linux using eBPF☆1,144Updated 10 months ago
- eBPF library for Go. Powered by libbpf.☆801Updated 2 weeks ago
- Collection of Linux eBPF slides/documents.☆941Updated last year
- An eBPF program debugger☆210Updated 3 years ago