daveti / syscallhLinks
syscall hijacking in 2019
☆11Updated 6 years ago
Alternatives and similar repositories for syscallh
Users that are interested in syscallh are comparing it to the libraries listed below
Sorting:
- ELF Shared library injector using DT_NEEDED precedence infection. Acts as a permanent LD_PRELOAD☆110Updated 5 years ago
- Obfuscates dynamic symbol table☆134Updated 6 years ago
- A Linux x86_64 ELF loader in user-space written in Rust☆39Updated 4 years ago
- Пример руткита для ядра линукс 5☆19Updated 4 years ago
- A system call interception tool☆58Updated 8 months ago
- ARMv7 architecture plugin☆41Updated last year
- PPT of my talks.☆11Updated 2 months ago
- Heap analysis tooling for ptmalloc☆45Updated 3 years ago
- An IDA processor for eBPF bytecode☆34Updated 8 years ago
- Linux assembly language minimal 'dynamic ELF' example plus experiments☆25Updated 5 years ago
- practice☆67Updated 5 years ago
- ELF DSO injector☆67Updated 2 months ago
- Signedness-Agnostic Strided-Interval☆38Updated 6 years ago
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)☆37Updated 2 years ago
- A plugin for the commercial IDA Pro disassembler that warns users if they leave their instance idling for too long.☆31Updated 4 years ago
- Code injector for ELF binaries (incl. PIE)☆28Updated 7 years ago
- Rootkit spotter - experimental Linux rootkit finder LKM☆30Updated 4 years ago
- Decode machine code into VEX IR and translate into LLVM IR☆28Updated 6 years ago
- LD_PRELOAD hook to trace malloc and free☆44Updated 7 years ago
- Use Intel Pin tools to analysis binary.☆37Updated 10 years ago
- linux-exploit☆14Updated 6 years ago
- sample linux x86_64 ELF virus☆53Updated 7 years ago
- Log data to/from SSL_write/SSL_read to disk using LD_PRELOAD hooks☆90Updated 5 years ago
- 🔓 x86 Linux Kernel rootkit for Debian 9 (4.9.0-11-686-pae)☆35Updated 5 years ago
- Changing memory protection in an arbitrary process☆47Updated 6 years ago
- gopclntab finder and analyzer for Radare2☆20Updated 5 years ago
- Dump page tables on various OSes and analyze them☆28Updated 9 years ago
- a linux kernel function inline hooking library☆30Updated 7 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for ARM (Presented at BlackHat Asia 2018)☆73Updated 7 years ago
- Rootkit breaker - experimental Linux anti-rootkit tool based on kprobes☆12Updated 4 years ago