yasukata / zpoline
system call hook for Linux
☆495Updated 2 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for zpoline
- 📡🐧 Linux kernel syscall implementation tracker☆195Updated last week
- Userspace eBPF runtime for Observability, Network & General Extensions Framework☆819Updated last week
- Investigate kernel error call stacks☆207Updated 2 weeks ago
- Reference setup for Linux kernel development in VSCode☆202Updated 6 months ago
- Using ftrace for function hooking in Linux kernel☆252Updated 3 years ago
- eBPF verifier based on abstract interpretation☆389Updated this week
- blazesym is a library for address symbolization and related tasks☆115Updated this week
- The system call intercepting library☆631Updated 10 months ago
- A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29☆547Updated 4 months ago
- Quickly build and run kernels inside a virtualized snapshot of your live system☆453Updated 2 weeks ago
- High-performance QEMU memory and instruction tracing☆524Updated 3 months ago
- A powerful static binary rewriting tool☆979Updated 3 months ago
- Dectect syscall hooking using eBPF☆139Updated last year
- Userspace eBPF VM with llvm JIT/AOT compiler☆53Updated 2 months ago
- An eBPF program debugger☆197Updated 2 years ago
- Userspace eBPF VM☆829Updated this week
- Explore a live Linux kernel's memory using GDB☆112Updated 2 years ago
- Linux Kernel hooking engine (x86)☆331Updated 5 months ago
- ☆142Updated 5 months ago
- ☆425Updated 2 months ago
- An eBPF playground☆195Updated 10 months ago
- KVM-based Virtual Machine Introspection☆311Updated last week
- An easy way to virtualize the running system☆332Updated last year
- A small library to modify all page-table levels of all processes from user space for x86_64 and ARMv8.☆237Updated last week
- 🌐🐧 Browsable linux kernel syscall tables built with Systrack (https://github.com/mebeim/systrack)☆146Updated last month
- bypass system calls using BPF☆36Updated last month
- ☆75Updated this week
- LLEF is a plugin for LLDB to make it more useful for RE and VR☆335Updated 2 months ago
- A tool to recover a fully analyzable .ELF from a raw kernel, through extracting the kernel symbol table (kallsyms)☆1,345Updated 3 months ago
- Examples of using BPF ring buffer APIs☆121Updated 4 years ago