trailofbits / linuxeventsLinks
A sample PoC for container-aware exec events for osquery
☆24Updated last year
Alternatives and similar repositories for linuxevents
Users that are interested in linuxevents are comparing it to the libraries listed below
Sorting:
- Various utilities useful for developers writing BPF tools☆30Updated 2 years ago
- A C++ library that parses debug information encoded in BTF format☆28Updated 2 years ago
- Static analysis tool based on clang, which detects source-to-binary information leaks in C and C++ projects☆86Updated 3 years ago
- This repository contains the companion code from the "All your tracing are belong to BPF" blog posts☆19Updated 2 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆118Updated this week
- Symbolic execution of LLVM IR traces for program understanding.☆27Updated 11 years ago
- An Integrity-Check Monitoring Pintool☆58Updated 5 years ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- ☆28Updated 7 years ago
- ☆59Updated 2 years ago
- Supporting Materials for “Symbolic Triage” blog post☆24Updated 3 years ago
- Join the REVEN community. Ask questions, talk about reverse engineering, discuss REVEN, and show off your work!☆13Updated 4 years ago
- Binary Ninja plugin for visualizing coverage over time☆25Updated 3 years ago
- gopclntab finder and analyzer for Radare2☆21Updated 5 years ago
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆34Updated last year
- PoC multi-layer protector for ELF32 x86 binaries☆12Updated 3 years ago
- File Capability Extractor☆14Updated 5 months ago
- Experiments involving the Windows Hypervisor Platform☆23Updated 5 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated 2 years ago
- Virtual machine introspection library based on libvmi - parts of this work have been funded by Deutsche Forschungsgemeinschaft (DFG) – pr…☆31Updated 3 years ago
- Demonstrate ability to read memfd_secret() data from the kernel☆58Updated 2 years ago
- Another (bad) ROP gadget finder, but this time in Rust☆21Updated last year
- Some Rust bindings for Binary Ninja☆31Updated 2 years ago
- ☆21Updated 4 years ago
- A system call interception tool☆58Updated last year
- Dr. Disassembler☆37Updated 3 years ago
- intel x86(-64) code analysis library that reconstructs control flow☆108Updated 3 weeks ago
- Python interface for Binexport, the Bindiff export format☆17Updated this week
- clang-based search engine for C/C++ data structures, classes, prototypes & macros☆103Updated 5 months ago
- a friendly wrapper around ptrace☆134Updated 3 years ago