ex0dus-0x / ward
Simple ELF runtime packer for creating self-protecting binaries
☆21Updated last year
Alternatives and similar repositories for ward
Users that are interested in ward are comparing it to the libraries listed below
Sorting:
- Load a statically-linked ELF binary(x86 architecture) without the execve syscall.☆42Updated 4 years ago
- ☆20Updated 6 years ago
- Experiment with Linux system calls (memfd_create, fexecve, fork...)☆22Updated 6 years ago
- Rizin FLIRT Signature Database☆40Updated last year
- Evasive ELF Static PIE User-Land-Exec featured in Tmpout Vol 1.☆28Updated 3 years ago
- Code injection from Linux kernel to a process☆21Updated last year
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆32Updated last year
- An Integrity-Check Monitoring Pintool☆57Updated 4 years ago
- Ida Pro plugin to aid in reverse engineering Rust binaries.☆16Updated 5 months ago
- An ELF / PE binary packer written in pure C, made for fun☆87Updated last year
- Find strings in Go binaries☆53Updated 5 years ago
- An ELF loader capable of manually loading ELF executables directly from memory into a new process, without the use of exec.☆51Updated 5 years ago
- Anti-analysis tool that obfuscates ELF files☆28Updated 4 years ago
- ☆47Updated 2 years ago
- pyGoRE - Python library for analyzing Go binaries☆64Updated 3 years ago
- NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection☆29Updated last year
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆72Updated 5 years ago
- Plugin on Python; Create signatures for rust binaries☆17Updated 2 years ago
- Fix Go obfuscated binaries that were obfuscated using gobfuscator☆47Updated 3 years ago
- Collection of simple anti-debugging tricks for Linux☆55Updated 7 years ago
- A dynamically loadable virtual-machine based rootkit designed for Linux Kernel v5.13.0 using AMD-V (SVM).☆29Updated 2 years ago
- A Linux x86/x86-64 tool to trace registers and memory regions.☆37Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆72Updated last year
- A utility to fix intentionally corrupted UPX packed files.☆85Updated last year
- A Portable Executable parser for Golang☆47Updated 4 months ago
- ☆26Updated 3 years ago
- Recover 64 bit ELF executables from memory dump☆89Updated 6 years ago
- Linux Kernel module-less implant (backdoor)☆72Updated 4 years ago
- LLVM pass that obfuscates against symbolic execution☆75Updated 6 years ago
- short crackme for Windows XP SP3 (32 bit version). ring0 stuff. IMO very fun x-)☆23Updated last year