trailofbits / linuxeventsLinks
A sample PoC for container-aware exec events for osquery
☆24Updated last year
Alternatives and similar repositories for linuxevents
Users that are interested in linuxevents are comparing it to the libraries listed below
Sorting:
- Various utilities useful for developers writing BPF tools☆30Updated 2 years ago
- A C++ library that parses debug information encoded in BTF format☆28Updated 2 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆117Updated 2 years ago
- Static analysis tool based on clang, which detects source-to-binary information leaks in C and C++ projects☆86Updated 3 years ago
- This repository contains the companion code from the "All your tracing are belong to BPF" blog posts☆18Updated 2 years ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- ☆59Updated 2 years ago
- Join the REVEN community. Ask questions, talk about reverse engineering, discuss REVEN, and show off your work!☆13Updated 3 years ago
- Supporting Materials for “Symbolic Triage” blog post☆24Updated 2 years ago
- A system call interception tool☆58Updated 10 months ago
- An Integrity-Check Monitoring Pintool☆58Updated 4 years ago
- X86 disassembler benchmark☆62Updated last year
- ☆28Updated 7 years ago
- Virtual machine introspection library based on libvmi - parts of this work have been funded by Deutsche Forschungsgemeinschaft (DFG) – pr…☆30Updated 3 years ago
- Dr. Disassembler☆36Updated 3 years ago
- ugly code to check linux kernel memory and dump some internal structures☆48Updated 10 months ago
- generate assemblers from disassemblers, 2018 jailbreak security summit talk☆38Updated 5 years ago
- pyGoRE - Python library for analyzing Go binaries☆65Updated 3 years ago
- ☆53Updated 7 years ago
- Some Rust bindings for Binary Ninja☆30Updated 2 years ago
- Experiments involving the Windows Hypervisor Platform☆23Updated 5 years ago
- Windows API listing in JSON format - generated from SDK headers + SDK API documentation☆66Updated 5 years ago
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆34Updated last year
- An automated setup for fuzzing Redis w/ AFL++☆34Updated 3 years ago
- Demonstrate ability to read memfd_secret() data from the kernel☆58Updated last year
- Another (bad) ROP gadget finder, but this time in Rust☆22Updated last year
- Intel x86 bare metal hypervisor for researching snapshot fuzzing ideas.☆167Updated 4 years ago
- An example of hijacking the dynamic linker with a custom interpreter who loads and executes modular viruses☆67Updated 3 years ago
- Crystal Anti-Exploit Protection 2012☆37Updated 5 years ago
- Tantō slices functions into more consumable chunks☆71Updated 5 months ago