citronneur··on Time Travel Debugging IDA plugin v1.1.0ttddbg 1.1.0 is out with new tracing feature ! Based on #IDA database, arguments and return value are pretty-printed !
citronneur··on Show HN: Knockles – eBPF Port Knocking ToolImpressive works, It allows you to knock on 80 and 443 ports without drivers!
citronneur··on Show HN: Credentials dumper for Linux using eBPFI made a little fix, if you want to retry
citronneur··on Show HN: Credentials dumper for Linux using eBPFYou have also https://github.com/pathtofile/bad-bpf or https://github.com/Gui774ume/ebpfkit which are good references also
citronneur··on Show HN: Credentials dumper for Linux using eBPFYou need uretprobe but also need to read an arg by ref so no I don't think so... But thanks for the tip
citronneur··on Show HN: Credentials dumper for Linux using eBPFYes we also use for https://github.com/airbus-cert/dirtypipe-ebpf_detection which is a dirtypipe detection program!
citronneur··on Show HN: Credentials dumper for Linux using eBPFExactly, we have to found the address to hook on the system, so we need the path of the currently use of libpam by other process
citronneur··on Show HN: Remote Desktop Protocol in Node.jsAn exemple of node-rdpjs -> https://github.com/citronneur/mstsc.js