trailofbits / linuxeventsLinks
A sample PoC for container-aware exec events for osquery
☆24Updated last year
Alternatives and similar repositories for linuxevents
Users that are interested in linuxevents are comparing it to the libraries listed below
Sorting:
- Various utilities useful for developers writing BPF tools☆30Updated 2 years ago
- A C++ library that parses debug information encoded in BTF format☆28Updated 2 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆117Updated 2 years ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- Static analysis tool based on clang, which detects source-to-binary information leaks in C and C++ projects☆86Updated 3 years ago
- Join the REVEN community. Ask questions, talk about reverse engineering, discuss REVEN, and show off your work!☆13Updated 3 years ago
- This repository contains the companion code from the "All your tracing are belong to BPF" blog posts☆18Updated 2 years ago
- Demonstrate ability to read memfd_secret() data from the kernel☆58Updated last year
- A system call interception tool☆58Updated 11 months ago
- ☆59Updated 2 years ago
- ☆28Updated 7 years ago
- Open Source eBPF Malware Analysis Framework☆53Updated last year
- ☆21Updated 4 years ago
- Some Rust bindings for Binary Ninja☆31Updated 2 years ago
- Another (bad) ROP gadget finder, but this time in Rust☆22Updated last year
- intel x86(-64) code analysis library that reconstructs control flow☆108Updated last month
- Pulled out Linux kernel code to run in userland so they could be targeted by AFL and KLEE☆20Updated 5 years ago
- (Linux Kernel) Stack Monitoring Tool☆47Updated 3 years ago
- An example of hijacking the dynamic linker with a custom interpreter who loads and executes modular viruses☆67Updated 3 years ago
- GitHub Actions based repository scanning workflows with a primary goal of evaluating C & C++ repositories for risks.☆16Updated last year
- Fix Go obfuscated binaries that were obfuscated using gobfuscator☆47Updated 4 years ago
- Supporting Materials for “Symbolic Triage” blog post☆24Updated 3 years ago
- Coverage-Guided Greybox Distributed Fuzzer☆132Updated 7 months ago
- ☆89Updated last year
- hypervisor enforced patch protection for the linux kernel with xen + libvmi, libvmi KASLR offset spoofer☆34Updated last year
- gopclntab finder and analyzer for Radare2☆21Updated 5 years ago
- a friendly wrapper around ptrace☆133Updated 3 years ago
- File Capability Extractor☆14Updated 4 months ago
- pyGoRE - Python library for analyzing Go binaries☆65Updated 3 years ago
- Dr. Disassembler☆37Updated 3 years ago