rootfoo / rootkit
Fully functional but simplified Linux Kernel Module (LKM) Rootkit for educational purposes
☆59Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for rootkit
- JynxKit2 is an LD_PRELOAD userland rootkit based on the original JynxKit. The backdoor has been replaced with an "accept()" system hook.☆159Updated 11 years ago
- Proof of concept for injecting simple shellcode via ptrace into a running process.☆61Updated 2 years ago
- A LKM rootkit for most newer kernel versions.☆169Updated 7 years ago
- LKM rootkit for Linux x86 with the 2.6 kernel. It inserts salts inside system_call and sysenter_entry.☆82Updated last year
- Matryoshka - stacked LKM loader☆50Updated last year
- A ptrace POC by hooking SSH to reveal provided passwords☆180Updated 7 years ago
- Rootkit Detector for UNIX☆61Updated last year
- bdvl☆109Updated 2 years ago
- Exercises from Designing BSD Rootkits working in 2020 with FreeBSD 12.2☆45Updated 2 years ago
- Generate very tiny reverse shell binaries for Linux~☆74Updated 4 years ago
- ELF Shared library injector using DT_NEEDED precedence infection. Acts as a permanent LD_PRELOAD☆109Updated 4 years ago
- In line function hooking LKM rootkit☆51Updated 4 years ago
- Linux v4.x.x Rootkit☆86Updated 3 months ago
- LKRG bypass methods☆71Updated 4 years ago
- -x-x-x- DO NOT RUN ON PRODUCTION MACHINE -x-x-x- LD_PRELOAD based user-land rootkit for Linux platform.☆26Updated 3 years ago
- This is a kernel module invoked reverse shell proof of concept.☆71Updated 5 years ago
- Reflective SO injection is a library injection technique in which the concept of reflective programming is employed to perform the loadin…☆113Updated 8 years ago
- a pstree mod that prints other helpful information and with added functionality☆24Updated 4 years ago
- An example rootkit that gives a userland process root permissions☆76Updated 5 years ago
- The first Linux hooking framework to allow merging two binary files into one!☆95Updated 4 years ago
- ELF launcher for encrypted binaries decrypted on-the-fly and executed in memory☆26Updated 4 years ago
- Backdoor that listens for specially crafted ICMP packets and spawns reverse shells.☆67Updated 4 years ago
- A functional exploit for CVE-2019-18634, a BSS overflow in sudo's pwfeedback feature that allows for for privesc☆57Updated 4 years ago
- A tool like /bin/ps but uses /proc/kcore for walking the tasklist; this finds hidden processes☆57Updated 9 years ago
- Binary Golf Library☆62Updated 3 years ago
- Linux Rootkit Scanner☆85Updated 2 years ago
- JynxKit is an LD_PRELOAD userland rootkit for Linux systems with reverse connection SSL backdoor☆56Updated 11 years ago
- ☆100Updated 6 years ago
- linux rootkit☆156Updated 6 years ago
- www.phrack.org☆71Updated last year