milabs / khookLinks
Linux Kernel hooking engine (x86)
☆376Updated last month
Alternatives and similar repositories for khook
Users that are interested in khook are comparing it to the libraries listed below
Sorting:
- Using ftrace for function hooking in Linux kernel☆290Updated 4 years ago
- Linux based inter-process code injection without ptrace(2)☆254Updated 8 years ago
- A LKM rootkit for most newer kernel versions.☆180Updated 8 years ago
- linux elf injector for x86 x86_64 arm arm64☆342Updated 7 years ago
- Linux Kernel Hacking☆746Updated last year
- Secure ELF parsing/loading library for forensics reconstruction of malware, and robust reverse engineering tools☆449Updated 6 months ago
- A small kernel module that can hook arbitrary syscalls on x86_64☆52Updated 6 years ago
- Kernel Address Space Layout Derandomization (KASLD) - A collection of various techniques to infer the Linux kernel base virtual address a…☆462Updated last year
- KVM-based Virtual Machine Introspection☆354Updated last month
- Injects code into ELF executables post-build☆234Updated last year
- POSIX Function tracing☆338Updated 8 years ago
- A collection of Linux kernel rootkits found across the internet taken and put together☆88Updated 3 years ago
- Tiny loaders for various binary formats.☆244Updated 9 years ago
- Linux kernel exploitation experiments☆378Updated this week
- Devestating and awesome Linux X86_64 ELF Virus☆233Updated 3 years ago
- ebpfkit is a rootkit powered by eBPF☆821Updated 2 years ago
- A small library to modify all page-table levels of all processes from user space for x86_64 and ARMv8.☆271Updated 7 months ago
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆473Updated last year
- Examples for: Learning KVM - implement your own kernel☆379Updated 2 years ago
- Dectect syscall hooking using eBPF☆165Updated 2 years ago
- Packer/Protector for x86-64 ELF binaries on Linux☆173Updated 4 years ago
- linux rootkit adapted for 2.6 and 3.x☆216Updated 9 years ago
- Advanced process execution monitoring utility for linux (procmon like)☆85Updated 9 years ago
- Tool for injecting a shared object into a Linux process☆1,212Updated 3 years ago
- GIMPLE obfuscator for C, C++, Go, ... all supported GCC targets and front-ends that use GIMPLE.☆402Updated 4 years ago
- ☆168Updated 10 months ago
- ROPium is a tool that helps you building ROP exploits by finding and chaining gadgets together☆388Updated 2 years ago
- A fuzzer for full VM kernel/driver targets☆758Updated 4 months ago
- Academic project of Linux rootkit made for Bachelor Engineering Thesis.☆116Updated last year
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆132Updated last year