hardenedvault / ved-ebpf
VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF
☆150Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for ved-ebpf
- Linux Kernel Runtime Integrity with eBPF☆164Updated 11 months ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆123Updated last year
- An eBPF playground☆195Updated 11 months ago
- Dectect syscall hooking using eBPF☆139Updated last year
- ☆84Updated 4 months ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆136Updated 2 years ago
- POC for Phantom Attack☆79Updated 2 years ago
- Vault Exploit Defense☆123Updated 2 months ago
- Red Canary's eBPF Sensor☆101Updated 4 months ago
- eBPF hacks☆173Updated 2 months ago
- Kubernetes offensive framework built in eBPF☆35Updated last year
- ☆296Updated last year
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆549Updated 4 months ago
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆77Updated 3 weeks ago
- monitor and protect SSH sessions with eBPF☆65Updated 3 years ago
- Trace deep kernel events through eBPF and lsm hooks☆34Updated 3 years ago
- ☆100Updated last month
- 🐝 Ransomware Detection using Machine Learning with eBPF for Linux.☆54Updated 4 months ago
- ebpfkit is a rootkit powered by eBPF☆761Updated last year
- Leveraging CVEs as North Stars in vulnerability discovery and comprehension.☆61Updated 7 months ago
- Example BPF program with LSM hooks☆31Updated 3 years ago
- ☆60Updated last year
- PoC and Detection for CVE-2024-21626☆71Updated 9 months ago
- The Linux port of the Sysinternals Sysmon tool.☆241Updated this week
- Linux Kernel module-less implant (backdoor)☆66Updated 3 years ago
- Disable SSL certificate verification for all binaries that use libssl☆50Updated 2 years ago
- An eBPF detection program for CVE-2022-0847☆27Updated 2 years ago
- A binary hardening system☆99Updated last year
- A collection of Linux kernel rootkits found across the internet taken and put together☆74Updated 2 years ago
- Elf binary infector written in Go.☆206Updated last year