NateBrune / fmemLinks
Linux Kernel Module designed to help analyze volatile memory in the linux kernel
☆124Updated 3 weeks ago
Alternatives and similar repositories for fmem
Users that are interested in fmem are comparing it to the libraries listed below
Sorting:
- Trusted Path Execution (TPE) Linux Kernel Module☆163Updated 6 years ago
- GitHub mirror of the Linux Kernel's audit repository☆157Updated last week
- Layer 4 Single Packet Authentication Linux kernel module utilizing Netfilter hooks and kernel supported Berkeley Packet Filters (BPF)☆118Updated 2 years ago
- (Linux Kernel) Stack Monitoring Tool☆48Updated 4 years ago
- ELF anti-forensics exec, for injecting full dynamic executables into process image (With thread injection)☆138Updated 7 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆132Updated last year
- Script that dumps running process memory from Linux systems using /proc.☆79Updated 12 years ago
- BootHole vulnerability (CVE-2020-10713). detection script, links and other mitigation related materials☆69Updated 5 years ago
- A place to store my toy linux-security modules.☆91Updated 4 years ago
- Rootkit Detector for UNIX☆61Updated 2 years ago
- A ptrace library for easy syscall injection in Linux.☆184Updated last year
- Extract BIOS firmware from Intel-based workstations and laptops☆340Updated last year
- Fully functional but simplified Linux Kernel Module (LKM) Rootkit for educational purposes☆63Updated 6 years ago
- Devestating and awesome Linux X86_64 ELF Virus☆235Updated 3 years ago
- Fork of KVM with Virtual Machine Introspection patches☆37Updated 3 weeks ago
- ELF binary infector☆33Updated 14 years ago
- ☆247Updated 4 years ago
- Summary of the patch status for Meltdown / Spectre☆350Updated 7 years ago
- Tear the firmware apart with your bare hands;-)☆192Updated 6 months ago
- A tool like /bin/ps but uses /proc/kcore for walking the tasklist; this finds hidden processes☆58Updated 10 years ago
- JynxKit2 is an LD_PRELOAD userland rootkit based on the original JynxKit. The backdoor has been replaced with an "accept()" system hook.☆181Updated 13 years ago
- IPMI stuff from DARPA work☆74Updated 3 years ago
- ssldump - (de-facto repository gathering patches around the cyberspace)☆254Updated this week
- A LKM rootkit for most newer kernel versions.☆180Updated 8 years ago
- Fork of aeskeyfind that knows more formats of AES key schedule☆68Updated 8 years ago
- A simple tool to create a physical memory dump from userland☆17Updated 5 years ago
- IPE is a Linux Security Module (LSM), which allows for a configurable policy to enforce integrity requirements on the whole system. IPE b…☆67Updated 2 months ago
- eBPF - extended Berkeley Packet Filter tooling☆133Updated 3 years ago
- x86 emulation and shellcode detection☆154Updated last year
- A command-line utility program that performs some simple operations on PCAP files (Wireshark/tcpdump traces) very quickly. Allows you to …☆113Updated 2 months ago