MaskRay / ElfHacks
Dive into ELF files using simple self-contained examples
☆143Updated 9 years ago
Alternatives and similar repositories for ElfHacks:
Users that are interested in ElfHacks are comparing it to the libraries listed below
- An ELF parsing and manipulation library for Python☆74Updated 10 years ago
- Linux Exploits☆138Updated 9 years ago
- A Python interface to the GNU Binary File Descriptor (BFD) library.☆120Updated 8 years ago
- GDB scripts to add support for low level debugging and reverse engineering☆147Updated 8 years ago
- Examples for Linux ptrace(2)☆137Updated 9 months ago
- A minimal toy implementation of strace(1)☆174Updated last year
- Dump page tables on various OSes and analyze them☆28Updated 9 years ago
- ☆110Updated 11 years ago
- Example of how to use the ptrace(2) system call to call a userspace method.☆145Updated 5 years ago
- Notes on various topics I'm interested in☆157Updated 9 years ago
- A ptrace library for easy syscall injection in Linux.☆174Updated 6 months ago
- Course project to insert a backdoor into an open source compiler (Ken Thompson’s Reflections on Trusting Trust)☆102Updated 10 years ago
- A library for GDB (with python support), that adds useful functions to the standard 'gdb' library.☆77Updated 13 years ago
- ELF shared library import table patching for function redirection.☆188Updated 4 years ago
- ELF Unstrip Tool☆106Updated 9 years ago
- POSIX Function tracing☆326Updated 7 years ago
- Test suite for the Linux perf_event subsystem☆111Updated 3 months ago
- Fast and efficient binary translator☆58Updated 6 years ago
- A Linux kernel module that locates the system call table in memory and hooks uname. Contributions welcome!☆59Updated 11 years ago
- This is the new ftrace (https://github.com/elfmaster/ftrace) - Much faster, better resolution but not complete yet! :)☆106Updated 6 years ago
- Routines for hunting down kernel symbols.☆81Updated 13 years ago
- Binary Translator to LLVM IR☆215Updated last year
- API tracing framework for Linux C/C++ applications☆158Updated 8 years ago
- ☆48Updated 4 years ago
- an architecture-independent decompiler to LLVM IR☆386Updated 9 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆127Updated 3 months ago