ait-aecid / caraxesLinks
Academic research rootkit using ftrace-hooking to hide files and processes via magic word or user/group. Tested until Linux 6.11.
☆26Updated last month
Alternatives and similar repositories for caraxes
Users that are interested in caraxes are comparing it to the libraries listed below
Sorting:
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆119Updated last month
- Ftrace Based Linux Loadable Kernel Module Rootkit for Linux Kernel 5.x and 6.x on x86_64, hides files, hides process, hides bind shell & …☆21Updated last year
- eBPF hacks☆188Updated 7 months ago
- ☆99Updated 11 months ago
- ☆101Updated 6 months ago
- Damn Vulenerable Kernel Module for kernel fuzzing☆62Updated 8 months ago
- LPE exploit in the linux module n_gsm.c. This module is used to implement the GSM 07.10 multiplexing protocol. This type of error was “Ra…☆41Updated last year
- ELF binary forensics tool for APT, virus, backdoor and rootkit detection☆48Updated 8 months ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆161Updated 10 months ago
- ☆67Updated 8 months ago
- Rust Linux Kernel Module designed for LKM rootkit detection☆50Updated 4 months ago
- Linux rootkit for educational purposes☆32Updated last year
- Cheat sheet to detect and remove linux kernel rootkit☆67Updated 7 months ago
- Linpmem is a linux memory acquisition tool☆85Updated 3 weeks ago
- In-Memory Rootkit For Linux☆71Updated last month
- Tooling backed by an LLM for performing natural language searches against compiled target binaries. Search for encryption code, password …☆162Updated last year
- Fuzzing IoT Devices Using the Router TL-WR902AC as Example☆114Updated last year
- Open Source eBPF Malware Analysis Framework☆48Updated 8 months ago
- This tool have the power to hide any PID/directory in the Linux kernel☆27Updated 10 months ago
- Elf binary infector written in Go.☆211Updated 6 months ago
- Exploit for CVE-2025-21756 for Linux kernel 6.6.75. My first linux kernel exploit!☆143Updated last month
- Custom exploits☆26Updated last year
- ☆16Updated 10 months ago
- Python tool to resolve all strings in Go binaries obfuscated by garble☆114Updated 4 months ago
- CVE-2023-4911 proof of concept☆168Updated last year
- Spectre based on Linear Address Masking☆69Updated last year
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆66Updated 2 months ago
- yet another hidden LKM hunter☆24Updated last year
- Ghidra scripts for recovering string definitions in Go binaries☆116Updated 8 months ago
- XZ Backdoor Extract(Test on Ubuntu 23.10)☆16Updated last year