armosec / curingLinks
io_uring based rootkit
☆238Updated 5 months ago
Alternatives and similar repositories for curing
Users that are interested in curing are comparing it to the libraries listed below
Sorting:
- A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs☆333Updated 3 months ago
- eBPF hacks☆186Updated 9 months ago
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆127Updated 4 months ago
- eBPF Memory Dump Tool☆86Updated last month
- Userland exec PoC to be used as attack vector technique☆90Updated 3 weeks ago
- A library for intercepting system calls☆102Updated 9 months ago
- ☆135Updated last year
- Rust Linux Kernel Module designed for LKM rootkit detection☆52Updated 6 months ago
- An eBPF🐝 Keylogger with C2-based RCE payload delivery☆299Updated 4 months ago
- Zaps arguments and environment from the process list☆230Updated last year
- An ssh honeypot with the XZ backdoor. CVE-2024-3094☆144Updated last year
- Make your programs stealthier🐝☆188Updated 3 months ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆167Updated last year
- Utility to find hidden Linux kernel modules☆145Updated 2 months ago
- nysm is a stealth post-exploitation container.☆261Updated 3 months ago
- An eBPF playground☆206Updated last year
- This tool have the power to hide any PID/directory in the Linux kernel☆29Updated last year
- ☆84Updated 3 months ago
- Open Source eBPF Malware Analysis Framework☆52Updated 11 months ago
- WallEscape vulnerability in util-linux☆52Updated last year
- reverse shell using curl☆207Updated 7 months ago
- ☆89Updated last year
- Cheat sheet to detect and remove linux kernel rootkit☆73Updated 9 months ago
- Deep Linux runtime visibility meets Wireshark☆293Updated 2 months ago
- Linpmem is a linux memory acquisition tool☆88Updated 3 months ago
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆196Updated last year
- Tooling backed by an LLM for performing natural language searches against compiled target binaries. Search for encryption code, password …☆162Updated last year
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated 2 years ago
- NIST-based CVE lookup store and API powered by Rust.☆133Updated 3 weeks ago
- Damn Vulnerable UEFI☆292Updated last year