Hackerl / pangolinLinks
Inject ELF into remote process
☆152Updated 2 years ago
Alternatives and similar repositories for pangolin
Users that are interested in pangolin are comparing it to the libraries listed below
Sorting:
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆305Updated last year
- The demo of hidden process and ko module☆22Updated 3 years ago
- ☆85Updated 4 years ago
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆69Updated 3 months ago
- Linux EDR written in Golang and based on eBPF.☆244Updated 3 years ago
- ☆49Updated 3 years ago
- Use kprobe capture common kernel event and can also use for hids agent(kernel module)☆10Updated 2 years ago
- Container (Docker) escape exploits☆53Updated 4 years ago
- ☆53Updated 3 years ago
- IDA Pro每周小技巧☆279Updated 3 years ago
- a PoC for Linux to get around agents that log commands being executed, without root privilege. Linux低权限模糊化执行的程序名和参数,避开基于execve系统调用监控的命令日志☆245Updated 6 years ago
- CVE-2022-0185 POC and Docker and Analysis write up☆38Updated 3 years ago
- ☆25Updated 3 years ago
- 利用github action定时爬取先知、安全客等的文章进行保存☆67Updated 4 years ago
- HIDS/EDR Demo☆15Updated 5 years ago
- Golang eBPF RASP☆10Updated 2 years ago
- 40行代码检测到大部分CobaltStrike的shellcode☆293Updated 4 years ago
- Go语言,不允许import,请开始你的表演☆62Updated 3 years ago
- CVE exploits for Web, Windows, Linux and others are independently written by Zhuri Lab☆46Updated 5 years ago
- 一个基于LKM的Linux内核级rootkit的实现,包含模块隐藏、提权、文件隐藏、进程隐藏、端口隐藏功能☆114Updated last year
- Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the comm…☆103Updated 2 years ago
- 毕方智能云沙箱(Bold-Falcon)是一个开源的自动化恶意软件分析系统;☆156Updated 2 years ago
- SysTracer: Linux 系统活动跟踪器☆33Updated 3 years ago
- 容器安全漏洞的分析与复现☆159Updated last year
- Learning eBPF from zero to hero☆38Updated 2 years ago
- collections of container escape techniques 🐿☆73Updated 4 years ago
- Hades is a Host-Based Intrusion Detection System based on both eBPF(kernel) and netlink/cn_proc(userspace).☆28Updated last year
- codemillx is a tool for CodeQL, extract the comments in the code and generate codeql module. 强化Go开源项目安全检测(内含开源项目漏洞挖掘方法)☆205Updated 3 years ago
- Windows Security Resources☆74Updated 4 years ago
- 愿我的努力与付出,能成为你向上攀登的基石。要是10年前有人告诉我这些就好了。☆250Updated 6 months ago