airbus-cert / dirtypipe-ebpf_detectionLinks
An eBPF detection program for CVE-2022-0847
☆28Updated 3 years ago
Alternatives and similar repositories for dirtypipe-ebpf_detection
Users that are interested in dirtypipe-ebpf_detection are comparing it to the libraries listed below
Sorting:
- ☆89Updated last year
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆59Updated 3 years ago
- Dectect syscall hooking using eBPF☆162Updated 2 years ago
- Sandfly Linux Stealth Rootkit Decloaking Utility☆105Updated 2 years ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆166Updated last year
- POC for Phantom Attack☆83Updated 3 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆137Updated 2 years ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- Open Source eBPF Malware Analysis Framework☆52Updated last year
- Cisco ASA Software and ASDM Security Research☆85Updated 3 years ago
- Linux Kernel Runtime Integrity with eBPF☆183Updated last year
- Mara is a userland pty/tty sniffer☆53Updated last year
- Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stag…☆89Updated 2 years ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- This tool have the power to hide any PID/directory in the Linux kernel☆29Updated last year
- bdvl☆114Updated 3 years ago
- Red Canary's eBPF Sensor☆111Updated 4 months ago
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆129Updated 4 months ago
- Scapy hands-on☆34Updated last year
- Rust Linux Kernel Module designed for LKM rootkit detection☆53Updated 7 months ago
- io_uring based network scanner written in Rust☆44Updated 2 years ago
- Evasive ELF Static PIE User-Land-Exec featured in Tmpout Vol 1.☆28Updated 4 years ago
- ☆48Updated 3 years ago
- https://breaking-bits.gitbook.io/breaking-bits/exploit-development/linux-kernel-exploit-development☆44Updated 3 years ago
- Project containing several tools/ scripts to recover the OpenSSH session keys used to encrypt/ decrypt SSH traffic.☆91Updated last year
- Project Vault Range PoC: Know your enemy and yourself to build better defense-in-depth solution!☆47Updated 6 months ago
- Linux Kernel module-less implant (backdoor)☆74Updated 4 years ago
- A collection of bypasses and exploits for eBPF-based cloud security.☆25Updated last year
- Linux BPF plugins for Volatility3☆24Updated last year
- Proof of concept for injecting simple shellcode via ptrace into a running process.☆72Updated 2 years ago