WeiJiLab / kernel-inline-hook-framework
hook or replace arbitary linux kernel functions in runtime, supporting arm32, arm64, x86, x86_64
☆178Updated 3 weeks ago
Alternatives and similar repositories for kernel-inline-hook-framework:
Users that are interested in kernel-inline-hook-framework are comparing it to the libraries listed below
- linux kernel inline hook☆120Updated 2 years ago
- Trace Android framework API, native libraries, system calls and other events using eBPF☆84Updated 6 months ago
- deobfuse compiler☆214Updated 3 years ago
- A cli tool to install a hardware breakpoint/watchpoint on a process in linux.☆189Updated 6 months ago
- ☆79Updated 3 years ago
- break ollvm.☆98Updated 4 years ago
- A step-by-step tutorial for building an LLVM sample pass☆192Updated 2 years ago
- Android system call hook☆145Updated last week
- Code injection on Android without ptrace☆213Updated 10 months ago
- Container and system event tracing using eBPF☆32Updated last week
- Shared Library Injector on Android☆146Updated 4 years ago
- A tool that traces system calls using eBPF☆231Updated 2 months ago
- Loadable Kernel Module for Android☆70Updated 5 years ago
- ollvm, base on llvm-clang 18.x☆73Updated 11 months ago
- silent syscall hooking without modifying sys_call_table/handlers via patching exception handler☆126Updated 9 months ago
- IDA plugin, unwind stack trace when debugging arm.☆136Updated 4 years ago
- Materials for LIEF tutorials☆145Updated last year
- Change vermagic and CRCs of a Linux Kernel Module☆51Updated 6 years ago
- PLCT实验室维护的ollvm分支。原始代码来自于 https://github.com/obfuscator-llvm/obfuscator 移植到了最新的 LLVM 上。☆166Updated 2 years ago
- LLVM PASS by SsageParuders.Port to llvm_14.06 with New PM.Support for Android-ndk-r25(LTS).☆155Updated last year
- 笔者在一款基于LLVM编译器架构的retdec开源反编译器工具的基础上,融合了klee符号执行工具,通过符号执行(Symbolic Execution)引擎动态模拟反编译后的llvm的ir(中间指令集)运行源程序的方法,插桩所有的对x86指令集的thiscall类型函数对t…☆216Updated 2 years ago
- Custom linker implemented with Segmentation Fault handler☆21Updated 5 years ago
- ☆33Updated 10 months ago
- My toy llvm pass☆133Updated 2 years ago
- Syscall table hook frame in Android kernel for arm and arm64☆81Updated 7 years ago
- btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具☆152Updated 7 months ago
- BTFHub, but for Android☆34Updated last year
- Malicious use of ELF such as .so inject, func hook and so on.☆74Updated 7 years ago
- Automatically de-obfuscate ollvm and generate binaries☆105Updated 3 years ago
- deobfuscator llvm arm64 script☆88Updated 5 years ago