linuxthor / rkbreakerLinks
Rootkit breaker - experimental Linux anti-rootkit tool based on kprobes
☆12Updated 4 years ago
Alternatives and similar repositories for rkbreaker
Users that are interested in rkbreaker are comparing it to the libraries listed below
Sorting:
- Rootkit spotter - experimental Linux rootkit finder LKM☆30Updated 4 years ago
- ☆33Updated 3 years ago
- Miscellaneous old Exploit code and PoCs☆16Updated 8 months ago
- This is a simple tool to dump all the reparse points on an NTFS volume.☆33Updated 4 years ago
- Forked from Akayan. Windows Kernel Exploitation. Static & dynamic analysis, exploits & vuln reasearch. Mitigations bypass's, genric bug-c…☆16Updated 7 months ago
- Using Undocumented NTDLL Functions to Read/Write/Delete File☆18Updated 4 years ago
- General purpose repository for miscellaneous scripts, pcaps and malware IOCs that we share with the info-sec research community☆39Updated 4 years ago
- ☆21Updated 4 years ago
- Resources from my journey into Windows binary exploitation☆22Updated 6 years ago
- ☆11Updated 3 years ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆24Updated last year
- Yet another Windows DLL injector.☆39Updated 3 years ago
- ETrace is a syscall tracing utility powered by eBPF☆25Updated 2 years ago
- Tools for analyzing Windows containers and break container's isolation☆31Updated 2 years ago
- PoC multi-layer protector for ELF32 x86 binaries☆11Updated 3 years ago
- Bootkits☆18Updated last year
- An opensource API hooking framework☆22Updated 5 years ago
- Linux kernel module that provides remote backdoor using netfilters , file and pid hiding.☆11Updated 8 years ago
- scripting IDA like a Pro☆24Updated 4 years ago
- Lightweight FreeBSD rootkit for stealth persistence, process hiding, and system control.☆19Updated 5 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆15Updated last year
- Пример руткита для ядра линукс 5☆19Updated 4 years ago
- A simple tool to view important DLL Characteristics and change DEP and ASLR☆44Updated 6 years ago
- Slides from various conference talks☆37Updated 2 years ago
- ☆14Updated 5 years ago
- Currently proof-of-concept☆17Updated 3 years ago
- Simple LKM linux kernel rootkit (x86 / x86_64)☆23Updated 5 years ago
- Utilities for working with vivisect☆25Updated 3 months ago