milabs / khook
Linux Kernel hooking engine (x86)
☆339Updated last month
Alternatives and similar repositories for khook:
Users that are interested in khook are comparing it to the libraries listed below
- Using ftrace for function hooking in Linux kernel☆259Updated 3 years ago
- Secure ELF parsing/loading library for forensics reconstruction of malware, and robust reverse engineering tools☆430Updated 2 months ago
- Linux based inter-process code injection without ptrace(2)☆240Updated 7 years ago
- A LKM rootkit for most newer kernel versions.☆172Updated 7 years ago
- linux elf injector for x86 x86_64 arm arm64☆324Updated 6 years ago
- Injects code into ELF executables post-build☆226Updated 7 months ago
- Kernel Address Space Layout Derandomization (KASLD) - A collection of various techniques to infer the Linux kernel base virtual address a…☆429Updated 9 months ago
- POSIX Function tracing☆326Updated 7 years ago
- A small kernel module that can hook arbitrary syscalls on x86_64☆49Updated 5 years ago
- Linux Kernel Hacking☆662Updated 9 months ago
- ROPium is a tool that helps you building ROP exploits by finding and chaining gadgets together☆383Updated 2 years ago
- ELF anti-forensics exec, for injecting full dynamic executables into process image (With thread injection)☆129Updated 6 years ago
- KVM-based Virtual Machine Introspection☆319Updated 2 months ago
- Kernel Fuzzer for Xen Project (KF/x) - Hypervisor-based fuzzing using Xen VM forking, VMI & AFL☆471Updated 6 months ago
- A small library to modify all page-table levels of all processes from user space for x86_64 and ARMv8.☆249Updated 2 months ago
- Devestating and awesome Linux X86_64 ELF Virus☆225Updated 2 years ago
- Advanced process execution monitoring utility for linux (procmon like)☆84Updated 8 years ago
- A ptrace library for easy syscall injection in Linux.☆174Updated 6 months ago
- A fuzzer for full VM kernel/driver targets☆666Updated this week
- Tiny loaders for various binary formats.☆228Updated 8 years ago
- LibZeroEvil & the Research Rootkit project.☆593Updated 3 years ago
- ☆283Updated 4 years ago
- A Bochs-based instrumentation project designed to log kernel memory references, to identify "double fetches" and other OS vulnerabilities☆327Updated 5 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆127Updated 3 months ago
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆565Updated 6 months ago
- Linux kernel rootkit☆307Updated this week
- The ERESI Reverse Engineering Software Interface☆557Updated 4 years ago
- ☆148Updated last week
- jemalloc heap exploitation framework☆452Updated 3 years ago
- Tracking CVEs for the linux Kernel☆740Updated 9 months ago