WeiJiLab / kernel-inline-hook-framework
hook or replace arbitary linux kernel functions in runtime, supporting arm32, arm64, x86, x86_64
☆186Updated 2 months ago
Alternatives and similar repositories for kernel-inline-hook-framework:
Users that are interested in kernel-inline-hook-framework are comparing it to the libraries listed below
- linux kernel inline hook☆124Updated 2 years ago
- Trace Android framework API, native libraries, system calls and other events using eBPF☆90Updated 9 months ago
- A cli tool to install a hardware breakpoint/watchpoint on a process in linux.☆213Updated 9 months ago
- Loadable Kernel Module for Android☆71Updated 5 years ago
- deobfuse compiler☆214Updated 4 years ago
- System Call Hook for ARM64☆148Updated 3 weeks ago
- Change vermagic and CRCs of a Linux Kernel Module☆52Updated 6 years ago
- A step-by-step tutorial for building an LLVM sample pass☆196Updated 2 years ago
- ☆82Updated 3 years ago
- ollvm, base on llvm-clang 18.x☆78Updated last year
- A tool that traces system calls using eBPF☆242Updated 5 months ago
- Do something to fit android aarch64 to develop ebpf programs using libbpf-bootstrap framework☆34Updated last year
- Code injection on Android without ptrace☆236Updated last year
- Container and system event tracing using eBPF☆33Updated 3 months ago
- break ollvm.☆99Updated 4 years ago
- Dynamic java method hook for Android,Implemented by jvmti☆19Updated last year
- BTFHub, but for Android☆37Updated last year
- silent syscall hooking without modifying sys_call_table/handlers via patching exception handler☆130Updated last year
- ☆34Updated last year
- Android eBPF sample☆48Updated 2 years ago
- Android system call hook☆199Updated 3 months ago
- btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具☆166Updated 10 months ago
- Custom linker implemented with Segmentation Fault handler☆21Updated 5 years ago
- ☆67Updated 7 months ago
- 笔者在一款基于LLVM编译器架构的retdec开源反编译器工具的基础上,融合了klee符号执行工具,通过符号执行(Symbolic Execution)引擎动态模拟反编译后的llvm的ir(中间指令集)运行源程序的方法,插桩所有的对x86指令集的thiscall类型函数对t…☆216Updated 3 years ago
- ☆117Updated 3 years ago
- LLVM PASS by SsageParuders.Port to llvm_14.06 with New PM.Support for Android-ndk-r25(LTS).☆161Updated last year
- Linux内核级无痕进程注入驱动,无视所有硬性内存区域扫描检测,为开发者和研究者提供强大的内核级进程注入方案。☆70Updated last year
- system call hooking on arm64 linux via a variety of methods☆49Updated 2 years ago
- IDA plugin, unwind stack trace when debugging arm.☆137Updated 4 years ago