null-luo / btrace
btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具
☆167Updated 10 months ago
Alternatives and similar repositories for btrace:
Users that are interested in btrace are comparing it to the libraries listed below
- DexDumper based eBPF on Android Platform☆119Updated 3 months ago
- Frida-Sigaction-Seccomp实现对Android APP系统调用的拦截☆107Updated last year
- ☆116Updated 2 years ago
- 关于Magisk生态的研究☆134Updated last year
- frida dump android elf, support spawn and attach mode☆76Updated last year
- ☆76Updated 5 months ago
- Android system call hook☆200Updated 3 months ago
- 计算内存中的libc.so,libart.so的crc与文件中的对比检测apk是否处于异常环境。☆69Updated 2 years ago
- smali trace☆165Updated 2 years ago
- ☆74Updated 3 weeks ago
- Seccomp + Signal Intercept SVC☆89Updated last year
- frida runtime resolves smali☆81Updated last week
- ☆117Updated 3 years ago
- 一个自定义注入so的脚手架☆153Updated 5 months ago
- Dynamic java method hook for Android,Implemented by jvmti☆19Updated last year
- 对于目前主流android逆向工具的检测☆107Updated 2 years ago
- 一个IDA插件,利用frida-stalker在加载so时打印出所有函数调用,解决frida-trace无法在so加载时trace的问题☆162Updated 4 months ago
- 安卓绕过ptrace反调试☆70Updated 4 years ago
- this is frida trace assemble and register change tools☆156Updated last year
- monitor svc calls of android☆73Updated 6 years ago
- 一个基于ptrace-seccomp简单的重定向openat的demo☆71Updated 2 years ago
- 劫持Zygote在App启动前注入so☆280Updated 7 months ago
- oneplus 7t 自定义内核(for 安卓逆向/外挂分析)☆233Updated 2 years ago
- Tenet的修复版本,支持了ida9.0,增加了类似LLDB的调试逻辑,优化了界面,增加了arm64的支持,以及ALSR部分的重写☆147Updated 2 weeks ago
- ☆131Updated 2 years ago
- jadx ai analysis plug-in☆64Updated last month
- A dynamic dex dumper, implemented in rust, no frida.☆133Updated 2 years ago
- blackbox☆104Updated 2 weeks ago
- ☆156Updated 5 years ago
- 个人专用 ONEPLUS 5 内核,做了一些基础的反调试修改(从 maps 隐藏特定 lib,最完整最正常的 tracerPid 修改措施)☆80Updated 3 years ago