History for linux_kernel_hacking / 3_RootkitTechniques
2020-09-06
@Harvey Phillips
wrong syscall name
Harvey Phillips committed on 6 Sep 2020
@Harvey Phillips
add link to blog post
Harvey Phillips committed on 6 Sep 2020
@Harvey Phillips
image in readme
Harvey Phillips committed on 6 Sep 2020
@Harvey Phillips
interfering with random and urandom read requests works!
Harvey Phillips committed on 6 Sep 2020
2020-08-27
@Harvey Phillips
5.3: updated to use ftrace instead of old method
Harvey Phillips committed on 27 Aug 2020
2020-08-26
@Harvey Phillips
The age of tabs is over. The age of spaces has begun.
Harvey Phillips committed on 26 Aug 2020
@Harvey Phillips
The age of tabs is over. The age of spaces has begun.
Harvey Phillips committed on 26 Aug 2020
@Harvey Phillips
Add explanation for why on earth we have the same function repeated four times
Harvey Phillips committed on 26 Aug 2020
@Harvey Phillips
Add linux_dirent struct block to PTREGS hook_getdents()
Harvey Phillips committed on 26 Aug 2020
@Harvey Phillips
Fix for kernel versions <4.17 ...
Harvey Phillips committed on 26 Aug 2020
@Harvey Phillips
3.4: tabs to spaces
Harvey Phillips committed on 26 Aug 2020
2020-08-25
@Harvey Phillips
working on support for < 4.17
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
update to use ftrace
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
update readme
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
fix function declaration
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
update to use ftrace
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
update version number
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
updated readme and add helper
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
add section 3 readme
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
remove ftrace comments
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
add check for x64 to correct syscall name
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
fix typo
Harvey Phillips committed on 25 Aug 2020
@Harvey Phillips
rewrite module using ftrace
Harvey Phillips committed on 25 Aug 2020
2020-08-14
@Harvey Phillips
remove wip test.sh
Harvey Phillips committed on 14 Aug 2020
@Harvey Phillips
updated readme for hiding ports
Harvey Phillips committed on 14 Aug 2020
@Harvey Phillips
hiding port 8080 now works!
Harvey Phillips committed on 14 Aug 2020
@Harvey Phillips
hide ports: builds and hooks, still needs guts
Harvey Phillips committed on 14 Aug 2020
2020-06-29
@Harvey Phillips
doesn't work yet because we have to assign a function to __tcp4_seq_show, not a function pointer
Harvey Phillips committed on 29 Jun 2020
@Harvey Phillips
hooking appears to work, but no effect yet
Harvey Phillips committed on 29 Jun 2020
@Harvey Phillips
hiding ports wip
Harvey Phillips committed on 29 Jun 2020