elfmaster / linker_preloading_virus
An example of hijacking the dynamic linker with a custom interpreter who loads and executes modular viruses
☆62Updated 3 years ago
Alternatives and similar repositories for linker_preloading_virus:
Users that are interested in linker_preloading_virus are comparing it to the libraries listed below
- Evasive ELF Static PIE User-Land-Exec featured in Tmpout Vol 1.☆26Updated 3 years ago
- In line function hooking LKM rootkit☆51Updated 5 years ago
- ELF Virus infection techniques that work with SCOP (Secure code partitioned) executables☆15Updated 5 years ago
- Matryoshka - stacked LKM loader☆50Updated last year
- Code injection from Linux kernel to a process☆19Updated last year
- yet another hidden LKM hunter☆19Updated last year
- ELF binary forensics tool for APT, virus, backdoor and rootkit detection☆47Updated 4 months ago
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 4 years ago
- ☆48Updated 4 years ago
- ☆47Updated 2 years ago
- Reverse text segment x64 ELF infector written in Assembly☆20Updated 3 years ago
- Rootkit spotter - experimental Linux rootkit finder LKM☆27Updated 4 years ago
- Linux Kernel module-less implant (backdoor)☆72Updated 4 years ago
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆65Updated 3 years ago
- Highly advanced Linux anti-exploitation and anti-tamper binary protector for ELF.☆156Updated 2 years ago
- A collection of Linux kernel rootkits found across the internet taken and put together☆73Updated 2 years ago
- -x-x-x- DO NOT RUN ON PRODUCTION MACHINE -x-x-x- LD_PRELOAD based user-land rootkit for Linux platform.☆27Updated 4 years ago
- NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection☆29Updated last year
- ugly code to check linux kernel memory and dump some internal structures☆46Updated 4 months ago
- ☆27Updated 5 years ago
- PoC for CVE-2021-32537: an out-of-bounds memory access that leads to pool corruption in the Windows kernel.☆57Updated 3 years ago
- A LKM rootkit targeting 4.x and 5.x kernel versions which opens a backdoor that can spawn a reverse shell to a remote host, launch malwar…☆122Updated 3 years ago
- A utility to fix intentionally corrupted UPX packed files.☆85Updated last year
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆39Updated 4 years ago
- Poc for ELF64 runtime infection via GOT poisoning technique by elfmaster☆29Updated 5 years ago
- Proof of concept for injecting simple shellcode via ptrace into a running process.☆69Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆70Updated last year
- ELF Shared library injector using DT_NEEDED precedence infection. Acts as a permanent LD_PRELOAD☆110Updated 4 years ago
- ☆36Updated 3 weeks ago
- PoC multi-layer protector for ELF32 x86 binaries☆11Updated 3 years ago