quarkslab / peetchLinks
An eBPF playground
☆206Updated last year
Alternatives and similar repositories for peetch
Users that are interested in peetch are comparing it to the libraries listed below
Sorting:
- Linux Kernel Runtime Integrity with eBPF☆180Updated last year
- bpflock - eBPF driven security for locking and auditing Linux machines☆149Updated 3 years ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆163Updated 10 months ago
- Dectect syscall hooking using eBPF☆159Updated 2 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆133Updated 2 years ago
- An eBPF program debugger☆210Updated 3 years ago
- ☆89Updated last year
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆631Updated last year
- ☆456Updated last month
- POC for Phantom Attack☆83Updated 2 years ago
- Get live information about applications that make network requests (based on eBPF)☆51Updated 6 months ago
- monitor and protect SSH sessions with eBPF☆70Updated 4 years ago
- eBPF - extended Berkeley Packet Filter tooling☆124Updated 3 years ago
- Trace deep kernel events through eBPF and lsm hooks☆37Updated 4 years ago
- ebpfkit is a rootkit powered by eBPF☆804Updated 2 years ago
- A file system events notifier based on eBPF☆71Updated 2 years ago
- Vault Exploit Defense☆128Updated 10 months ago
- io_uring based rootkit☆216Updated 3 months ago
- Disable SSL certificate verification for all binaries that use libssl☆49Updated 3 years ago
- Example BPF program with LSM hooks☆33Updated 4 years ago
- eBPF hacks☆188Updated 7 months ago
- Process behaviour anomaly detection using eBPF and unsupervised-learning Autoencoders☆131Updated 2 years ago
- Elastic's eBPF☆69Updated 3 weeks ago
- ☆304Updated 2 years ago
- A collection of bypasses and exploits for eBPF-based cloud security.☆24Updated last year
- 📡🐧 Linux kernel syscall implementation tracker☆217Updated 4 months ago
- Red Canary's eBPF Sensor☆108Updated last month
- eBPF Port Knocking Tool☆235Updated last year
- Quarkslab conference talks☆300Updated last week
- Harness for the Linux kernel eBPF verifier☆33Updated 2 years ago