sophos / talpa
Talpa Kernel file access interception modules
☆17Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for talpa
- A LLVM-based toolchain for Linux designed to build a portable osquery☆38Updated 3 weeks ago
- RFC8484 and DoH/JSON resolver☆39Updated last year
- Redirecting File System☆26Updated 7 years ago
- Dump GNU IFUNC implementation offsets from libc☆10Updated 2 years ago
- Kernel function hooking using exception tables☆27Updated 6 years ago
- x86info : x86 processor register decoder.☆40Updated 9 months ago
- unofficial grsecurity gpl release☆22Updated 5 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆113Updated last year
- Convert libvirt-QEMU-save (LQS) files to raw memory files☆14Updated 6 years ago
- Library and tools to access the QEMU Copy-On-Write (QCOW) image format☆54Updated last week
- LibVMI Python bindings☆30Updated last week
- A C++ library that parses debug information encoded in BTF format☆25Updated last year
- ☆62Updated last year
- A simple tool to create a physical memory dump from userland☆16Updated 3 years ago
- Load a .so from network and execute it inside a seccomp sandbox☆18Updated 9 years ago
- ptrace poke command-line tool☆14Updated 5 years ago
- An IDA processor for eBPF bytecode☆32Updated 7 years ago
- Modify ELF executables☆16Updated 5 years ago
- Golang specific ELF reader/parser CLI tool☆31Updated 7 years ago
- Linux syscall() injection☆35Updated 3 years ago
- Shadow-Box: Lightweight and Practical Kernel Protector for ARM (Presented at BlackHat Asia 2018)☆71Updated 6 years ago
- Back to the Whiteboard: a Principled Approach for the Assessment and Design of Memory Forensic Techniques (Usenix '19)☆13Updated 5 years ago
- An overlay that verifies signed ELF binaries☆9Updated 9 years ago
- ☆46Updated 6 years ago
- Draft of generic instrumentation tool based on QEMU using eBPF to implement trivial instrumentations with trivial code☆18Updated 4 years ago
- Heap analysis tooling for ptmalloc☆43Updated 2 years ago
- (fast) Capstone Go bindings☆12Updated 6 years ago
- Linux kernel - See Landlock issues☆35Updated last month
- A feature-complete reference implementation of a modern Xen VMI debugger. ARCHIVED: Development continues at https://github.com/spencermi…☆75Updated 4 years ago
- Linux Kernel TLS/DTLS Module Tool☆20Updated 7 years ago