comboshreddies / py-strace2pcapLinks
convert specific strace output file to pcap using scapy
☆19Updated 4 months ago
Alternatives and similar repositories for py-strace2pcap
Users that are interested in py-strace2pcap are comparing it to the libraries listed below
Sorting:
- An eBPF playground☆206Updated last year
- Dump unix domain socket traffic with bpf☆406Updated last year
- Collection of Statically linked binaries for Linux. Suited for Forensics☆178Updated 3 months ago
- Utility to execute ELF binary directly from stdin pipe.☆67Updated 2 years ago
- some static binaries for linux, maybe useful for bootstrapping, no big deal☆111Updated 5 months ago
- eBPF UDP -> TCP obfuscator☆228Updated last week
- report system wide file access events☆244Updated 2 weeks ago
- A simple tool to create a physical memory dump from userland☆16Updated 4 years ago
- Get live information about applications that make network requests (based on eBPF)☆53Updated 3 weeks ago
- Forkstat is a program that logs process fork(), exec() and exit() activity. It is useful for monitoring system behaviour and to track dow…☆109Updated 5 months ago
- ☆89Updated last year
- Linux syscall() injection☆38Updated 4 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆137Updated 2 years ago
- proof-of-concept tty hijacking via TIOCSTI or TIOCLINUX☆35Updated 5 months ago
- 🌐🐧 Browsable Linux kernel syscall tables built with Systrack (https://github.com/mebeim/systrack)☆200Updated this week
- io_uring based rootkit☆236Updated 5 months ago
- redirect all TCP/UDP traffic of any program to SOCKS5 proxy☆158Updated last year
- bpflock - eBPF driven security for locking and auditing Linux machines☆150Updated 3 years ago
- eBPF verifier log viewer☆24Updated last year
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆131Updated last year
- A library for intercepting system calls☆102Updated 9 months ago
- Linux kernel configs for popular distros.☆55Updated last month
- Layer 4 Single Packet Authentication Linux kernel module utilizing Netfilter hooks and kernel supported Berkeley Packet Filters (BPF)☆115Updated last year
- Linux Kernel Runtime Guard☆529Updated last week
- A ptrace library for easy syscall injection in Linux.☆183Updated last year
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆661Updated last year
- This module allows one to kill TCP sockets (including TIME-WAIT state).☆77Updated 4 years ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆167Updated last year
- Example BPF program with LSM hooks☆33Updated 4 years ago
- Vault Exploit Defense☆128Updated last year