trailofbits / btfparse
A C++ library that parses debug information encoded in BTF format
☆23Updated last year
Related projects: ⓘ
- Various utilities useful for developers writing BPF tools☆28Updated last year
- This repository contains the companion code from the "All your tracing are belong to BPF" blog posts☆18Updated last year
- A feature-complete reference implementation of a modern Xen VMI debugger. ARCHIVED: Development continues at https://github.com/spencermi…☆75Updated 3 years ago
- A sample PoC for container-aware exec events for osquery☆23Updated 7 months ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆113Updated last year
- Example program using eBPF to log data being based in using shell pipes☆40Updated 3 years ago
- Heap analysis tooling for dlmalloc☆26Updated 2 years ago
- Control-Flow Integrity implementation for the Linux Kernel 3.19☆20Updated 4 years ago
- BIOS-based boot menu and loader☆16Updated 7 years ago
- Fork of KVM with Virtual Machine Introspection patches☆33Updated 9 months ago
- Tool to extract the kallsyms (System.map) from a memory dump☆24Updated last year
- generate assemblers from disassemblers, 2018 jailbreak security summit talk☆37Updated 4 years ago
- Dr. Disassembler☆35Updated 2 years ago
- Dynamic binary translator for x86 binaries☆32Updated last year
- Pulled out Linux kernel code to run in userland so they could be targeted by AFL and KLEE☆19Updated 4 years ago
- ugly code to check linux kernel memory and dump some internal structures☆31Updated this week
- PPT of my talks.☆11Updated 2 years ago
- ☆20Updated last year
- An IDA processor for eBPF bytecode☆32Updated 7 years ago
- Draft of generic instrumentation tool based on QEMU using eBPF to implement trivial instrumentations with trivial code☆18Updated 4 years ago
- A system call interception tool☆53Updated last year
- IDA Pro Python plugin to analyze and annotate Linux kernel alternatives☆21Updated 2 years ago
- A BPF-based syscall fault injector☆94Updated last year
- Detect patterns of bad behavior in function calls☆25Updated 4 years ago
- uber eXtensible Micro-Hypervisor Framework☆29Updated 3 months ago
- gopclntab finder and analyzer for Radare2☆19Updated 4 years ago
- Rust binding for Keystone assembler framework☆11Updated 5 years ago
- Fork of QEMU with Virtual Machine Introspection patches☆11Updated last year
- ARMv7 architecture plugin☆39Updated 6 months ago