Diamorphine
modreveal
Our great sponsors
Diamorphine | modreveal | |
---|---|---|
1 | 6 | |
1,661 | 138 | |
- | - | |
3.0 | 2.6 | |
7 months ago | 7 months ago | |
C | C | |
GNU General Public License v3.0 or later | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Diamorphine
-
GitHub - jafarlihi/modreveal: Utility to find hidden Linux kernel modules
Looks like it can be used to detect the linked rootkit https://github.com/m0nad/Diamorphine
modreveal
-
Got hacked... trying to find what/how ...
More advanced and interesting tools: tracee , pspy , to uncover some rootkits https://github.com/jafarlihi/modreveal
- GitHub - jafarlihi/modreveal: Utility to find hidden Linux kernel modules
- modreveal: Utility to find hidden Linux kernel modules
- Show HN: Modreveal – Utility to find hidden Linux kernel modules
What are some alternatives?
Dimorf - Dimorf is a ransomware using 256-bit AES with a self-destructing, randomly generated key for Linux OS´s
OctopusWAF - OctopusWAF is a WAF( Web application firewall) with high performance, made in C language and use libevent.
RecycledInjector - Native Syscalls Shellcode Injector
Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
HiddenWall - Linux kernel module generator for Hidden firewall that follows the rules in the external YAML file.
tirdad - TCP ISN CPU Information Leak Protection. TCP Initial Sequence Numbers Randomization to prevent TCP ISN based CPU Information Leaks.
htkit - Information Gathering Simplified.
toxic - A Tox-based instant messaging and video chat client
casper-fs - Casper-fs is a Custom Hidden Linux Kernel Module generator. Each module works in the file system to protect and hide secret files.
skiboot - OPAL boot and runtime firmware for POWER
SmmBackdoorNg - Updated version of System Management Mode backdoor for UEFI based platforms: old dog, new tricks
reveng_rtkit - Linux Loadable Kernel Module (LKM) based rootkit (ring-0), capable of hiding itself, processes/implants, rmmod proof, has ability to bypass infamous rkhunter antirootkit.