kfiros / execmonLinks
Advanced process execution monitoring utility for linux (procmon like)
☆85Updated 9 years ago
Alternatives and similar repositories for execmon
Users that are interested in execmon are comparing it to the libraries listed below
Sorting:
- Trusted Path Execution (TPE) Linux Kernel Module☆163Updated 6 years ago
- ELF anti-forensics exec, for injecting full dynamic executables into process image (With thread injection)☆138Updated 7 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for x86 (Presented at BlackHat Asia 2017/2018, beVX 2018 and HITBSecConf 2017)☆188Updated 6 years ago
- ☆25Updated 12 years ago
- ELF packer - x86_64☆74Updated 10 years ago
- A Linux kernel module that locates the system call table in memory and hooks uname. Contributions welcome!☆57Updated 12 years ago
- Simple ELF tools written to demonstrate libelfmaster capabilities.☆41Updated 7 years ago
- A small kernel module that can hook arbitrary syscalls on x86_64☆52Updated 6 years ago
- midgetpack is a multiplatform secure ELF packer☆207Updated 11 years ago
- Linux Rootkit Scanner☆87Updated 3 years ago
- ☆62Updated 2 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆132Updated last year
- A ptrace library for easy syscall injection in Linux.☆184Updated last year
- sample linux x86_64 ELF virus☆54Updated 7 years ago
- This is the new ftrace (https://github.com/elfmaster/ftrace) - Much faster, better resolution but not complete yet! :)☆110Updated 7 years ago
- ld-linux code injector☆50Updated 14 years ago
- extended core file snapshot format☆230Updated 6 years ago
- Using ftrace for function hooking in Linux kernel☆292Updated 4 years ago
- Process dump to executable ELF for linux☆106Updated 4 years ago
- Original code about binary encryption from phrack☆71Updated 13 years ago
- a linux kernel function inline hooking library☆30Updated 8 years ago
- Using LibVMI to detect malware☆31Updated 3 years ago
- Slides, codes and videos of the talk "DEP/ASLR bypass without ROP/JIT" on CanSecWest 2013☆48Updated 12 years ago
- Utility for injecting executable code into a running process on x86/x64 Linux☆270Updated 9 years ago
- Heap analysis tooling for ptmalloc☆46Updated 3 years ago
- ☆47Updated 7 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for ARM (Presented at BlackHat Asia 2018)☆73Updated 7 years ago
- A mutation based user mode (ring3) dumb in-memory Windows Kernel (IOCTL) Fuzzer/Logger. This script attach it self to any given process a…☆67Updated 11 years ago
- linux elf injector for x86 x86_64 arm arm64☆344Updated 7 years ago
- LKM rootkit for Linux x86 with the 2.6 kernel. It inserts salts inside system_call and sysenter_entry.☆87Updated 2 years ago