armosec / curingLinks
io_uring based rootkit
☆249Updated 9 months ago
Alternatives and similar repositories for curing
Users that are interested in curing are comparing it to the libraries listed below
Sorting:
- eBPF hacks☆195Updated last year
- A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs☆336Updated 7 months ago
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆136Updated 8 months ago
- A library for intercepting system calls☆103Updated last year
- Rust Linux Kernel Module designed for LKM rootkit detection☆58Updated 10 months ago
- eBPF Memory Dump Tool☆98Updated 5 months ago
- Zaps arguments and environment from the process list☆241Updated last year
- ☆137Updated last year
- nysm is a stealth post-exploitation container.☆265Updated 7 months ago
- Userland exec PoC to be used as attack vector technique☆94Updated 3 months ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆168Updated last year
- An eBPF🐝 Keylogger with C2-based RCE payload delivery☆308Updated 8 months ago
- Python tool to resolve all strings in Go binaries obfuscated by garble☆186Updated 11 months ago
- Utility to find hidden Linux kernel modules☆146Updated 6 months ago
- An ssh honeypot with the XZ backdoor. CVE-2024-3094☆144Updated last year
- An eBPF playground☆210Updated 2 years ago
- Make your programs stealthier🐝☆201Updated 7 months ago
- This tool have the power to hide any PID/directory in the Linux kernel☆30Updated last year
- Open Source eBPF Malware Analysis Framework☆54Updated last year
- Deep Linux runtime visibility meets Wireshark☆302Updated 2 months ago
- ☆90Updated 2 months ago
- JA4TScan is an active TCP server fingerprinting tool.☆103Updated last year
- ☆86Updated 3 weeks ago
- Cheat sheet to detect and remove linux kernel rootkit☆78Updated last year
- Stealthy Linux Kernel Rootkit for modern kernels (6x)☆1,339Updated this week
- Linpmem is a linux memory acquisition tool☆95Updated 7 months ago
- WallEscape vulnerability in util-linux☆51Updated last year
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆199Updated 2 years ago
- A suite of services (SOCKS, FTP, shell, etc.) over Citrix, VMware Horizon and native Windows RDP virtual channels.☆304Updated 2 weeks ago
- Red-Team LKM☆631Updated last month