null-luo / btraceLinks
btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具
☆187Updated last year
Alternatives and similar repositories for btrace
Users that are interested in btrace are comparing it to the libraries listed below
Sorting:
- 关于Magisk生态的研究☆154Updated last year
- DexDumper based eBPF on Android Platform☆238Updated last month
- ☆123Updated 2 years ago
- Frida-Sigaction-Seccomp实现对Android APP系统调用的拦截☆120Updated last year
- frida runtime resolves smali☆86Updated 4 months ago
- 一个基于uprobe,能同时hook大量用户地址空间函数的kpm内核模块☆162Updated 2 months ago
- smali trace☆184Updated 3 years ago
- ☆89Updated 9 months ago
- Overt是一款功能强大的Android设备安全检测工具☆169Updated 2 weeks ago
- 用于练手的环境检测的demo☆87Updated last year
- 安卓绕过ptrace反调试☆72Updated 4 years ago
- Android system call hook☆221Updated 8 months ago
- Dynamic java method hook for Android,Implemented by jvmti☆54Updated last month
- ☆140Updated 3 weeks ago
- 计算内存中的libc.so,libart.so的crc与文件中的对比检测apk是否处于异常环境。☆72Updated 2 years ago
- Seccomp + Signal Intercept SVC☆88Updated 2 years ago
- frida dump android elf, support spawn and attach mode☆79Updated last year
- VirtualApp 原理速览☆45Updated 4 months ago
- a few android analysis tools, jni trace by native hook, Java Object Format to Json for Xposed and Frida☆163Updated last month
- a next-generation hooking and reflection framework built for performance, safety, and extensibility.☆221Updated this week
- 一个基于ptrace-seccomp简单的重定向openat的demo☆76Updated 2 years ago
- 2023 年 羊城杯 ezAndroid dex VMP 恢复工具☆37Updated last year
- 对目标函数进行trace 只适用于 arm64☆79Updated last month
- A dynamic dex dumper, implemented in rust, no frida.☆145Updated 2 years ago
- this is frida trace assemble and register change tools☆165Updated last year
- This is a dynamic instrumentation tool that can inject xposed module into any appliation on rooted Android devices.☆148Updated 6 months ago
- Tenet的修复版本,支持了ida9.0,增加了类似LLDB的调试逻辑,优化了界面, 增加了arm64的支持,以及ALSR部分的重写☆211Updated 5 months ago
- 一个IDA插件,利用frida-stalker在加载so时打印出所有函数调用,解决frida-trace无法在so加载时trace的问题☆202Updated 4 months ago
- ☆83Updated 6 months ago
- 个人专用 ONEPLUS 5 内核,做了一些基础的反调试修改(从 maps 隐藏特定 lib,最完整最正常的 tracerPid 修改措施)☆82Updated 3 years ago