NateBrune / fmem
Linux Kernel Module designed to help analyze volatile memory in the linux kernel
☆116Updated last year
Alternatives and similar repositories for fmem:
Users that are interested in fmem are comparing it to the libraries listed below
- Trusted Path Execution (TPE) Linux Kernel Module☆159Updated 5 years ago
- Forensic Analysis Tool for Btrfs File System.☆21Updated 6 years ago
- (Linux Kernel) Stack Monitoring Tool☆44Updated 3 years ago
- BootHole vulnerability (CVE-2020-10713). detection script, links and other mitigation related materials☆65Updated 4 years ago
- A place to store my toy linux-security modules.☆92Updated 4 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆130Updated 6 months ago
- Convert libvirt-QEMU-save (LQS) files to raw memory files☆37Updated last year
- GitHub mirror of the Linux Kernel's audit repository☆150Updated last week
- Handy kernel development scripts.☆48Updated 4 months ago
- The Official Github Repository of Daemonlogger☆21Updated 4 years ago
- ELF anti-forensics exec, for injecting full dynamic executables into process image (With thread injection)☆134Updated 7 years ago
- IPE is a Linux Security Module (LSM), which allows for a configurable policy to enforce integrity requirements on the whole system. IPE b…☆61Updated 2 months ago
- This is a kernel module invoked reverse shell proof of concept.☆72Updated 5 years ago
- TCP/UDP symmetric encryption tunnel wrapper☆120Updated 4 years ago
- This demonstrates the hijacking of the "write" system call and how to set the System Call table to read/write mode via modifying the corr…☆19Updated 10 years ago
- Summary of the patch status for Meltdown / Spectre☆348Updated 7 years ago
- Whitelisting LD_PRELOAD libraries using LD_AUDIT☆62Updated 3 years ago
- Script that dumps running process memory from Linux systems using /proc.☆79Updated 11 years ago
- Layer 4 Single Packet Authentication Linux kernel module utilizing Netfilter hooks and kernel supported Berkeley Packet Filters (BPF)☆113Updated last year
- ELF binary infector☆32Updated 13 years ago
- Pagemon is an interactive memory/page monitoring tool allowing one to browse the memory map of an active running process.☆39Updated last month
- IP Stack Integrity Checker☆30Updated 8 months ago
- A ptrace library for easy syscall injection in Linux.☆176Updated 9 months ago
- Forkstat is a program that logs process fork(), exec() and exit() activity. It is useful for monitoring system behaviour and to track dow…☆102Updated this week
- A boot record parser that identifies known good signatures for MBR, VBR and IPL.☆98Updated 2 months ago
- UNIX domain socket tracing LD_PRELOAD wrapper, mirror from git://git.gnumonks.org/udtrace☆49Updated 5 years ago
- IPMI stuff from DARPA work☆74Updated 2 years ago
- ☆34Updated 2 years ago
- A LLVM-based toolchain for Linux designed to build a portable osquery☆39Updated 5 months ago
- Fork of KVM with Virtual Machine Introspection patches☆36Updated last year