trailofbits / btfparse
A C++ library that parses debug information encoded in BTF format
☆25Updated last year
Alternatives and similar repositories for btfparse:
Users that are interested in btfparse are comparing it to the libraries listed below
- Various utilities useful for developers writing BPF tools☆31Updated last year
- This repository contains the companion code from the "All your tracing are belong to BPF" blog posts☆18Updated last year
- A sample PoC for container-aware exec events for osquery☆23Updated last year
- Tools for Linux kernel debugging on Bochs (including symbols, native Bochs debugger and IDA PRO)☆31Updated last year
- Linux kernel branches for confidential compute research☆17Updated last week
- PPT of my talks.☆11Updated 3 years ago
- Qiling Framework Documentation☆15Updated 10 months ago
- An IDA processor for eBPF bytecode☆33Updated 7 years ago
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)☆36Updated last year
- Tool to extract the kallsyms (System.map) from a memory dump☆25Updated last year
- Dynamic binary translator for x86 binaries☆33Updated last year
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- IDA Pro Python plugin to analyze and annotate Linux kernel alternatives☆22Updated 3 years ago
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆29Updated 9 months ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- Control-Flow Integrity implementation for the Linux Kernel 3.19☆20Updated 5 years ago
- Binary Ninja plugin to clean up some common obfuscation techniques.☆19Updated 4 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆117Updated last year
- PoC for obfuscating the dynamic symbol table injecting a custom Hash Table to do symbol resolution☆27Updated 4 years ago
- ☆29Updated 4 years ago
- Dr. Disassembler☆35Updated 3 years ago
- Experiments involving the Windows Hypervisor Platform☆23Updated 4 years ago
- ☆20Updated 3 years ago
- Full-VM taint analysis with Xen, Intel(R) Processor Trace and Triton.☆39Updated last year
- ☆17Updated 5 years ago
- A Linux x86_64 ELF loader in user-space written in Rust☆38Updated 4 years ago
- ☆90Updated 10 months ago
- IDA Database Importer plugin for Binary Ninja☆37Updated 5 months ago
- Naive Proof of Concept Crypter for GNU/Linux ELF64☆10Updated 7 years ago
- ETrace is a syscall tracing utility powered by eBPF☆24Updated last year