ilammy / ftrace-hook
Using ftrace for function hooking in Linux kernel
☆266Updated 4 years ago
Alternatives and similar repositories for ftrace-hook:
Users that are interested in ftrace-hook are comparing it to the libraries listed below
- Linux Kernel hooking engine (x86)☆337Updated 3 months ago
- kprobes template☆56Updated 4 years ago
- linux elf injector for x86 x86_64 arm arm64☆333Updated 6 years ago
- A small kernel module that can hook arbitrary syscalls on x86_64☆52Updated 5 years ago
- Dectect syscall hooking using eBPF☆149Updated last year
- hook or replace arbitary linux kernel functions in runtime, supporting arm32, arm64, x86, x86_64☆182Updated last month
- Advanced process execution monitoring utility for linux (procmon like)☆84Updated 9 years ago
- a linux kernel function inline hooking library☆30Updated 7 years ago
- A ptrace library for easy syscall injection in Linux.☆175Updated 8 months ago
- Examples of using BPF ring buffer APIs☆124Updated 4 years ago
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆592Updated 8 months ago
- Secure ELF parsing/loading library for forensics reconstruction of malware, and robust reverse engineering tools☆435Updated last month
- A LKM rootkit for most newer kernel versions.☆173Updated 7 years ago
- My exploring in linux kernel☆65Updated 3 weeks ago
- POSIX Function tracing☆329Updated 7 years ago
- Linux based inter-process code injection without ptrace(2)☆243Updated 7 years ago
- Tool tracing syscalls in a fast way using eBPF linux kernel feature☆99Updated 2 years ago
- A simple in-kernel tcp client and server implemented as LKMs☆54Updated 11 months ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆128Updated 5 months ago
- A network interface for GDB for Linux Kernel☆66Updated last year
- 抽出KVM代码进行注释☆61Updated 7 years ago
- Study blog. Much more about KVM/Kernel/Virtualization.☆72Updated 3 weeks ago
- Linux Kernel Hacking☆672Updated 11 months ago
- Kernel programming: This is a simple kernel module implementation for enforcing access control policies using Linux Security Module frame…☆31Updated 6 years ago
- ☆28Updated 3 years ago
- Code snippets from the O'Reilly book☆18Updated 2 years ago
- a lightweight library to parse Linux's /proc/[pid]/maps file, which contains the memory map of a process☆125Updated 5 months ago
- minivm based on kvm☆148Updated 9 months ago
- Linux Kernel Runtime Integrity with eBPF☆173Updated last year
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆127Updated 2 years ago