This is the list of all rootkits found so far on github and other sites.
-
Updated
May 7, 2023
This is the list of all rootkits found so far on github and other sites.
OpenClarity is an open source tool built to enhance security and observability of cloud native applications and infrastructure
Automated Cyber Offense
Linux Malware Sample Archive including various types of malicious ELF binaries and viruses. Be careful!
VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities
a summary of linux rootkits published on GitHub
Rootkit Detector for UNIX
Collection of windows rootkits
A curated list of rootkits found on Github and other sites.
Cerez 😈 userland LD_PRELOAD rootkit
ld_preload userland rootkit
-x-x-x- DO NOT RUN ON PRODUCTION MACHINE -x-x-x- LD_PRELOAD based user-land rootkit for Linux platform.
Linux userland rootkit. Hides file and directory, hides process, hides bind shell port, hides daemon port, hides reverse shell port, cleans up bash history and logs during installation
A LKM (Loadable Kernel Module) to execute a command as root; I include a example of using netcat and a compiled(with source and steps on how to compile) reverse shell provided in C.
Linux Loadable Kernel Module Rootkit for Linux Kernel 5.x and 6.x on x86_64, hides files, hides process, hides bind shell & reverse shell port, privilege escalation, cleans up logs and bash history during installation
The Never-Ending Hide and Seek: The Tale of APTX4869 Rootkit
Rootkit breaker - experimental Linux anti-rootkit tool based on kprobes
A Linux kernel module and userland utility pair to detect processes hidden by Linux kernel module (LKM) rootkits.
Nidhogg is an all-in-one simple to use rootkit for red teams.
Add a description, image, and links to the rootkits topic page so that developers can more easily learn about it.
To associate your repository with the rootkits topic, visit your repo's landing page and select "manage topics."