Rhydon1337 / linux-kernel-shadow-ssh
Hiding SSH public keys in SSH server using a kernel agent
☆20Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for linux-kernel-shadow-ssh
- Linux kernel filesystem filter driver☆20Updated 3 years ago
- Setup for windows kernel development (development, debugging automation and compiling)☆15Updated 3 years ago
- Minimal patch guard for linux kernel☆26Updated 4 years ago
- ATA command sniffer for Linux☆16Updated 3 years ago
- Enumrate all pci devices inside all pci buses☆15Updated 4 years ago
- Process hider for Linux systems using a kernel agent☆20Updated 3 years ago
- Force kill a process using windows kernel driver☆23Updated 3 years ago
- Protect a file from being deleted using windows kernel file system minifilter driver☆35Updated 3 years ago
- Protect a process from code injection, termination and hooking☆38Updated 3 years ago
- Force a file delete using a windows kernel driver☆61Updated 2 years ago
- Kernel mode to user mode so injection☆79Updated 4 years ago
- Setup for linux kernel development (development, debugging automation and compiling)☆30Updated last year
- silence file system monitoring components by hooking their minifilters☆51Updated 9 months ago
- A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks☆16Updated 9 months ago
- A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.☆28Updated 2 years ago
- An extended proof-of-concept for the CVE-2021-21551 Dell ‘dbutil_2_3.sys’ Kernel Exploit☆23Updated 3 years ago
- Injecting into SELinux-protected system service processes under root on Android.☆34Updated 8 months ago
- Another UEFI runtime bootkit☆30Updated last year
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆19Updated 2 years ago
- Taking advantage of CRT initialization, to get away with hooking protected applications☆43Updated 2 years ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆46Updated last year
- windows kernel pagehook☆38Updated 2 years ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆49Updated last year
- filter driver to hide files and directories☆12Updated 9 months ago
- ☆32Updated last year
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated last year
- A thin introspection hypervisor framework that allows for low level resource manipulation.☆12Updated 9 months ago
- C/C++ antidebugging library for 32 and 64 bit processors☆12Updated 4 months ago
- A VMBR (Virtual-Machine Based Rootkit) which runs a guest OS and sends the attacker its data☆27Updated 6 months ago