shubham0d / Immutable-file-linuxLinks
A small fun project to protect a file from writing using ftrace hooking.
☆24Updated 4 years ago
Alternatives and similar repositories for Immutable-file-linux
Users that are interested in Immutable-file-linux are comparing it to the libraries listed below
Sorting:
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)☆37Updated 2 years ago
- A C library for creating and using TCP/IP packets with raw network sockets☆70Updated last year
- Log data to/from SSL_write/SSL_read to disk using LD_PRELOAD hooks☆94Updated 6 years ago
- Rootkit breaker - experimental Linux anti-rootkit tool based on kprobes☆12Updated 5 years ago
- Changing memory protection in an arbitrary process☆47Updated 7 years ago
- ugly code to check linux kernel memory and dump some internal structures☆48Updated last year
- IDA SIG files for multiarch uClibc library☆38Updated 7 years ago
- A collection of Linux kernel rootkits found across the internet taken and put together☆91Updated 3 years ago
- ☆39Updated 3 years ago
- A system call interception tool☆58Updated last year
- Пример руткита для ядра линукс 5☆19Updated 5 years ago
- This repository contains the sources and documentation for the SWAPGS attack PoC (CVE-2019-1125)☆41Updated 5 years ago
- Dectect syscall hooking using eBPF☆166Updated 2 years ago
- A dynamically loadable virtual-machine based rootkit designed for Linux Kernel v5.13.0 using AMD-V (SVM).☆35Updated last month
- small elf loader☆171Updated last year
- An IDA processor for eBPF bytecode☆68Updated last year
- Code injector for ELF binaries (incl. PIE)☆28Updated 8 years ago
- Intel PT log analyzer With Parallel Processing And Basic Block Offset Caching Support☆71Updated 2 years ago
- Bootkits☆18Updated 2 years ago
- Using ftrace for function hooking in Linux kernel☆292Updated 4 years ago
- Debian10-Linux4.19 Hook sys_call_table By IDT☆11Updated 5 years ago
- Experiment with Linux system calls (memfd_create, fexecve, fork...)☆24Updated 6 years ago
- All materials related https://resources.infosecinstitute.com/tutorial-building-reverse-engineering-simple-virtual-machine-protection/☆55Updated 8 years ago
- A small kernel module that can hook arbitrary syscalls on x86_64☆52Updated 6 years ago
- An ELF loader capable of manually loading ELF executables directly from memory into a new process, without the use of exec.☆54Updated 6 years ago
- Using LibVMI to detect malware☆31Updated 3 years ago
- Collection of simple anti-debugging tricks for Linux☆59Updated 7 years ago
- Explore a live Linux kernel's memory using GDB☆117Updated 3 years ago
- KVM Virtual Machine Introspection Library☆47Updated 2 years ago
- Qiling Framework Documentation☆18Updated 9 months ago