ri-char / eStraceLinks
A tool that traces system calls using eBPF
☆266Updated last year
Alternatives and similar repositories for eStrace
Users that are interested in eStrace are comparing it to the libraries listed below
Sorting:
- eBPF-Based DexDumper for Android☆291Updated 3 months ago
- 基于eBPF的syscall追踪工具,适用于安卓平台☆324Updated 2 years ago
- btrace:binder_transaction+eBPF+Golang实现通用的Android APP动态行为追踪工具☆195Updated last year
- Trace Android framework API, native libraries, system calls and other events using eBPF☆154Updated last year
- A dynamic dex dumper, implemented in rust, no frida.☆151Updated 2 years ago
- A cli tool to install a hardware breakpoint/watchpoint on a process in linux.☆236Updated last year
- 关于Magisk生态的研究☆155Updated last year
- Android system call hook☆228Updated 10 months ago
- Code injection on Android without ptrace☆270Updated last year
- ☆123Updated 3 years ago
- Tenet的修复版本,支持了ida9.0,增加了类似LLDB的调试逻辑,优化了界面,增加了arm64的支持,以及ALSR部分的重写☆232Updated last week
- Do something to fit android aarch64 to develop ebpf programs using libbpf-bootstrap framework☆42Updated 2 years ago
- eBPF Android Debug Bridge☆536Updated last year
- ☆141Updated 3 months ago
- ☆37Updated 5 months ago
- Overt是一款功能强大的Android设备安全检测工具☆187Updated last week
- 一个基于uprobe,能同时hook大量用户地址空间函数的kpm内核模块☆175Updated 4 months ago
- Dynamic java method hook for Android,Implemented by jvmti☆63Updated 3 months ago
- 劫持Zygote在App启动前注入so☆337Updated last year
- linux kernel inline hook☆138Updated 3 years ago
- a few android analysis tools, jni trace by native hook, Java Object Format to Json for Xposed and Frida☆176Updated last month
- smali trace☆204Updated 3 years ago
- Frida-Sigaction-Seccomp实现对Android APP系统调用的拦截☆124Updated last year
- jadx ai analysis plug-in☆100Updated 2 weeks ago
- ☆174Updated 5 months ago
- 一个IDA插件,利用frida-stalker在加载so时打印出所有函数调用,解决frida-trace无法在so加载时trace的问题☆218Updated 6 months ago
- 自定义linker加载so☆173Updated 6 months ago
- 这是一个Android Project,具备设备指纹采集,设备安全检测的能力☆243Updated 3 months ago
- ☆122Updated 3 years ago
- hook or replace arbitary linux kernel functions in runtime, supporting arm32, arm64, x86, x86_64☆209Updated 2 weeks ago