elfmaster / skeksi_virus
Devestating and awesome Linux X86_64 ELF Virus
☆227Updated 2 years ago
Alternatives and similar repositories for skeksi_virus:
Users that are interested in skeksi_virus are comparing it to the libraries listed below
- ELF anti-forensics exec, for injecting full dynamic executables into process image (With thread injection)☆135Updated 7 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for x86 (Presented at BlackHat Asia 2017/2018, beVX 2018 and HITBSecConf 2017)☆185Updated 5 years ago
- Linux based inter-process code injection without ptrace(2)☆247Updated 7 years ago
- Cross Architecture Shellcode in C☆200Updated 8 years ago
- Conference slides and White-papers☆357Updated 5 years ago
- Secure ELF parsing/loading library for forensics reconstruction of malware, and robust reverse engineering tools☆435Updated 2 months ago
- sample linux x86_64 ELF virus☆53Updated 6 years ago
- Linux bind shell with anti-reverse engineering techniques☆286Updated 8 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆335Updated 5 years ago
- extended core file snapshot format☆223Updated 6 years ago
- This is the new ftrace (https://github.com/elfmaster/ftrace) - Much faster, better resolution but not complete yet! :)☆109Updated 6 years ago
- A tool to detect and crash Cuckoo Sandbox☆293Updated 9 months ago
- Example code from "Programming Linux Anti-Reversing Techniques"☆97Updated 8 years ago
- Obfuscates dynamic symbol table☆134Updated 6 years ago
- Cross Platform Kernel Fuzzer Framework☆450Updated 6 years ago
- Implementation of the SMM rootkit "The Watcher"☆126Updated 3 years ago
- add symbols back into a stripped ELF binary (~strip)☆171Updated 7 years ago
- ELF packer - x86_64☆72Updated 9 years ago
- A LKM rootkit for most newer kernel versions.☆174Updated 7 years ago
- HORSEPILL rootkit PoC☆226Updated 8 years ago
- Decompiler for x86 and x86-64 ELF binaries☆217Updated 6 years ago
- linux rootkit☆159Updated 7 years ago
- Function redirection via ELF tricks.☆158Updated 9 years ago
- ☆137Updated 3 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆163Updated 8 years ago
- A novel technique to hide code from debuggers & disassemblers☆156Updated 8 months ago
- A simple MBR hijack demonstration☆179Updated 2 years ago
- A kernel driver to practice writing exploits against, as well as some example exploits using public techniques.☆405Updated 10 years ago
- Zerokit/GAPZ rootkit (non buildable and only for researching)☆182Updated 6 years ago
- Hypervisor-Level Debugger based on Radare2 / LibVMI, using VMI IO and debug plugins☆133Updated 6 years ago