pathtofile / bpf-pipesnoopLinks
Example program using eBPF to log data being based in using shell pipes
☆41Updated 4 years ago
Alternatives and similar repositories for bpf-pipesnoop
Users that are interested in bpf-pipesnoop are comparing it to the libraries listed below
Sorting:
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆116Updated 2 years ago
- Linux Kernel Runtime Integrity with eBPF☆177Updated last year
- Trace deep kernel events through eBPF and lsm hooks☆36Updated 4 years ago
- Disable SSL certificate verification for all binaries that use libssl☆49Updated 2 years ago
- Dectect syscall hooking using eBPF☆153Updated 2 years ago
- ☆88Updated 10 months ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆131Updated 2 years ago
- LKRG bypass methods☆72Updated 5 years ago
- Find strings in Go binaries☆53Updated 5 years ago
- Example BPF program with LSM hooks☆33Updated 4 years ago
- gopclntab finder and analyzer for Radare2☆20Updated 4 years ago
- Heap analysis tooling for ptmalloc☆45Updated 2 years ago
- A C++ library that parses debug information encoded in BTF format☆25Updated 2 years ago
- Harness for the Linux kernel eBPF verifier☆33Updated 2 years ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆57Updated 2 years ago
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆43Updated 4 years ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- eBPF - extended Berkeley Packet Filter tooling☆123Updated 2 years ago
- An eBPF detection program for CVE-2022-0847☆28Updated 2 years ago
- Alcatraz project for Black Hat USA 2021☆78Updated 3 years ago
- Various utilities useful for developers writing BPF tools☆30Updated 2 years ago
- A feature-complete reference implementation of a modern Xen VMI debugger. ARCHIVED: Development continues at https://github.com/spencermi…☆77Updated 4 years ago
- Whitelisting LD_PRELOAD libraries using LD_AUDIT☆63Updated 3 years ago
- monitor and protect SSH sessions with eBPF☆69Updated 3 years ago
- ELF Virus infection techniques that work with SCOP (Secure code partitioned) executables☆15Updated 6 years ago
- a friendly wrapper around ptrace☆132Updated 3 years ago
- Changing memory protection in an arbitrary process☆47Updated 6 years ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆147Updated 3 years ago
- (Linux Kernel) Stack Monitoring Tool☆45Updated 3 years ago
- io_uring based network scanner written in Rust☆45Updated 2 years ago