haolipeng / ebpf-tutorialLinks
Beginner-friendly eBPF hands-on tutorial
☆81Updated this week
Alternatives and similar repositories for ebpf-tutorial
Users that are interested in ebpf-tutorial are comparing it to the libraries listed below
Sorting:
- bypass system calls using BPF☆46Updated 7 months ago
- Trace Android framework API, native libraries, system calls and other events using eBPF☆151Updated last year
- A Simple uprobe Hook Framework☆60Updated 7 months ago
- tcpw: An eBPF enhanced tool to capture tcp tuple info of curl,telnet,socat tools. License Apache 2.0☆24Updated 10 months ago
- ☆11Updated 8 months ago
- A tool that traces system calls using eBPF☆258Updated last year
- Do something to fit android aarch64 to develop ebpf programs using libbpf-bootstrap framework☆41Updated 2 years ago
- Intelligent kernel error injection/testing tool based on large model and eBPF.(基于大模型和eBPF的智能化kernel错误注入、测试工具)☆38Updated 6 months ago
- Inject remote process without using ptrace on linux based system☆17Updated 3 years ago
- 常用的加密算法理解以及魔改、对抗思路☆52Updated 2 years ago
- ☆122Updated 2 years ago
- Android assembly instruction tracing tool☆123Updated 6 months ago
- Build a feature-less eBPF vm on eBPF, just for fun.☆17Updated last year
- openssl tracer using eBPF☆16Updated 3 years ago
- ☆35Updated 4 months ago
- Single-step debugging of native code using frida, stalker, and semaphore☆81Updated last year
- ☆61Updated last year
- 一个通过控制指定内存段权限设置而实现阻止app自身inline hook行为的内核模块☆34Updated 7 months ago
- Attd QBDI Tracer☆84Updated 2 months ago
- 使用 frida stalker 实现的 trace☆29Updated 2 years ago
- ☆55Updated 3 months ago
- ☆83Updated 7 months ago
- Modernized kernel functions, kernel tracepoints and bpf progs tracing tool for the bpf era.☆123Updated 2 weeks ago
- tprt ollvm 反混淆 修改 binja il☆47Updated last year
- 一个基于uprobe,能同时hook大量用户地址空间函数的kpm内核模块☆166Updated 3 months ago
- Remote library injection into Android processes, then hooking via various methods☆61Updated last month
- 自實現Linker的小Demo☆73Updated 4 months ago
- System Call Hook for ARM64☆177Updated 2 weeks ago
- 一个用于检测安卓app自身是否被uprobe挂载的示例项目☆25Updated 3 months ago
- btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具☆192Updated last year