hackerschoice / bpfhacksLinks
eBPF hacks
☆190Updated last year
Alternatives and similar repositories for bpfhacks
Users that are interested in bpfhacks are comparing it to the libraries listed below
Sorting:
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆135Updated 6 months ago
- nysm is a stealth post-exploitation container.☆265Updated 6 months ago
- Cheat sheet to detect and remove linux kernel rootkit☆76Updated last year
- ☆136Updated last year
- SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)☆281Updated 9 months ago
- Userland exec PoC to be used as attack vector technique☆94Updated 2 months ago
- Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86…☆143Updated 3 years ago
- io_uring based rootkit☆244Updated 8 months ago
- An ssh honeypot with the XZ backdoor. CVE-2024-3094☆145Updated last year
- A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs☆331Updated 6 months ago
- Rust Linux Kernel Module designed for LKM rootkit detection☆56Updated 9 months ago
- WallEscape vulnerability in util-linux☆52Updated last year
- Get root via TTY / TIOCSTI stuffing☆76Updated 7 months ago
- Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)☆146Updated last year
- LD_PRELOAD rootkit☆137Updated last year
- Signing-key abuse and update exploitation framework☆131Updated 7 months ago
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆197Updated last year
- ROPDump is a command-line tool designed to analyze binary executables for potential Return-Oriented Programming (ROP) gadgets, buffer ove…☆87Updated last year
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆167Updated last year
- HardeningMeter is an open-source Python tool carefully designed to comprehensively assess the security hardening of binaries and systems.☆65Updated last year
- reverse shell using curl☆217Updated 10 months ago
- Linpmem is a linux memory acquisition tool☆94Updated 6 months ago
- ☆55Updated last year
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆131Updated 8 months ago
- In-Memory Rootkit For Linux and BSD☆86Updated 4 months ago
- A delicious, but malicious SSL-VPN server 🌮☆256Updated 2 months ago
- An automatic Blind ROP exploitation tool☆208Updated 2 years ago
- Mara is a userland pty/tty sniffer☆53Updated 2 years ago
- Open Source eBPF Malware Analysis Framework☆53Updated last year
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆52Updated 4 months ago