elfmaster / saruman
ELF anti-forensics exec, for injecting full dynamic executables into process image (With thread injection)
☆129Updated 6 years ago
Alternatives and similar repositories for saruman:
Users that are interested in saruman are comparing it to the libraries listed below
- Devestating and awesome Linux X86_64 ELF Virus☆226Updated 2 years ago
- ELF Shared library injector using DT_NEEDED precedence infection. Acts as a permanent LD_PRELOAD☆109Updated 4 years ago
- A tool like /bin/ps but uses /proc/kcore for walking the tasklist; this finds hidden processes☆57Updated 9 years ago
- Reflective SO injection is a library injection technique in which the concept of reflective programming is employed to perform the loadin…☆115Updated 8 years ago
- Linux based inter-process code injection without ptrace(2)☆241Updated 7 years ago
- Linux Rootkit Scanner☆85Updated 3 years ago
- C++-based shellcode builder☆112Updated 4 years ago
- midgetpack is a multiplatform secure ELF packer☆197Updated 10 years ago
- Cross Architecture Shellcode in C☆199Updated 8 years ago
- ☆55Updated 7 years ago
- Simple ELF tools written to demonstrate libelfmaster capabilities.☆38Updated 6 years ago
- Obfuscates dynamic symbol table☆135Updated 6 years ago
- LKM rootkit for Linux x86 with the 2.6 kernel. It inserts salts inside system_call and sysenter_entry.☆84Updated last year
- Implementation of the SMM rootkit "The Watcher"☆124Updated 2 years ago
- Utility for injecting executable code into a running process on x86/x64 Linux☆260Updated 8 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for x86 (Presented at BlackHat Asia 2017/2018, beVX 2018 and HITBSecConf 2017)☆185Updated 5 years ago
- Xenpwn is a toolkit for memory access tracing using hardware-assisted virtualization☆144Updated 8 years ago
- This is the new ftrace (https://github.com/elfmaster/ftrace) - Much faster, better resolution but not complete yet! :)☆107Updated 6 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆329Updated 5 years ago
- Linux v4.x.x Rootkit☆88Updated 6 months ago
- Fuzz and Detect "Use After Free" vulnerability in win32k.sys ( Heap based )☆132Updated 9 years ago
- linux elf injector for x86 x86_64 arm arm64☆327Updated 6 years ago
- Hardcore corruption of my execve() vulnerability in WSL☆214Updated 6 years ago
- Small tool for generating ropchains using unicorn and z3☆197Updated 6 years ago
- An event driven multi-core process debugging, tracing, and manipulation framework.☆172Updated 5 years ago
- Stealth's 64bit injectso port☆74Updated 14 years ago
- ELF packer - x86_64☆71Updated 9 years ago
- add symbols back into a stripped ELF binary (~strip)☆170Updated 7 years ago
- ☆112Updated 8 years ago
- sample linux x86_64 ELF virus☆53Updated 6 years ago