ait-aecid / caraxes
Academic research rootkit using ftrace-hooking to hide files and processes via magic word or user/group. Tested until Linux 6.11.
☆19Updated 3 weeks ago
Alternatives and similar repositories for caraxes
Users that are interested in caraxes are comparing it to the libraries listed below
Sorting:
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆112Updated last month
- XZ Backdoor Extract(Test on Ubuntu 23.10)☆16Updated last year
- In-Memory Rootkit For Linux☆69Updated 2 weeks ago
- Open Source eBPF Malware Analysis Framework☆48Updated 6 months ago
- Linpmem is a linux memory acquisition tool☆82Updated last year
- Rust Linux Kernel Module designed for LKM rootkit detection☆44Updated 2 months ago
- eBPF hacks☆187Updated 5 months ago
- kubernetes rootkit☆31Updated last year
- ☆16Updated 8 months ago
- Kernel Read Write Execute☆42Updated 4 months ago
- Linux rootkit for educational purposes☆31Updated last year
- WallEscape vulnerability in util-linux☆51Updated last year
- ASLR bypass without infoleak☆160Updated 3 years ago
- Damn Vulenerable Kernel Module for kernel fuzzing☆58Updated 6 months ago
- Linux Kernel module-less implant (backdoor)☆72Updated 4 years ago
- A collection of Linux kernel rootkits found across the internet taken and put together☆73Updated 2 years ago
- Cheat sheet to detect and remove linux kernel rootkit☆58Updated 4 months ago
- ☆52Updated 5 months ago
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆103Updated last month
- Oracle VirtualBox Elevation of Privilege (Local Privilege Escalation) Vulnerability☆219Updated last year
- ☆73Updated last year
- ☆101Updated 2 years ago
- LPE exploit in the linux module n_gsm.c. This module is used to implement the GSM 07.10 multiplexing protocol. This type of error was “Ra…☆41Updated 11 months ago
- AttackMate is an attack orchestration tool that executes full attack-chains based on playbooks.☆35Updated this week
- SRE - Dissecting Malware for Static Analysis & the Complete Command-line Tool☆53Updated 4 months ago
- Project Vault Range PoC: Know your enemy and yourself to build better defense-in-depth solution!☆45Updated last month
- ☆94Updated 4 months ago
- ☆88Updated 10 months ago
- This tool have the power to hide any PID/directory in the Linux kernel☆27Updated 8 months ago
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆49Updated last month