mirror of
https://github.com/h3xduck/TripleCross.git
synced 2026-01-05 07:53:08 +08:00
Completed chapter 6
This commit is contained in:
@@ -39,12 +39,25 @@
|
||||
|
||||
@proceedings{ebpf_friends,
|
||||
institution = {Datadog},
|
||||
author = {Guillaume Fournier, Sylvain Afchainthe},
|
||||
author = {Guillaume Fournier, Sylvain Afchain},
|
||||
organization= {DEFCON 29},
|
||||
eventtitle = {Cyber Threats 2021: A year in Retrospect},
|
||||
url = {https://media.defcon.org/DEF%20CON%2029/DEF%20CON%2029%20presentations/Guillaume%20Fournier%20Sylvain%20Afchain%20Sylvain%20Baubeau%20-%20eBPF%2C%20I%20thought%20we%20were%20friends.pdf}
|
||||
},
|
||||
|
||||
@online{ebpf_friends_github,
|
||||
title={ebpfkit},
|
||||
author = {Guillaume Fournier, Sylvain Afchain},
|
||||
url={https://github.com/Gui774ume/ebpfkit}
|
||||
},
|
||||
|
||||
@online{ebpf_friends_blackhat,
|
||||
title={With Friends Like eBPF, Who Needs Enemies?},
|
||||
author={Guillaume Fournier, Sylvain Baubeau},
|
||||
date={2021-08-05},
|
||||
url={https://i.blackhat.com/USA21/Wednesday-Handouts/us-21-With-Friends-Like-EBPF-Who-Needs-Enemies.pdf}
|
||||
}
|
||||
|
||||
@proceedings{evil_ebpf,
|
||||
institution = {NCC Group},
|
||||
author = {Jeff Dileo},
|
||||
@@ -53,6 +66,20 @@
|
||||
url = {https://raw.githubusercontent.com/nccgroup/ebpf/master/talks/Evil_eBPF-DC27-v2.pdf}
|
||||
},
|
||||
|
||||
@online{evil_ebpf_github,
|
||||
institution = {NCC Group},
|
||||
title = {Miscellaneous eBPF Tooling},
|
||||
url={https://github.com/nccgroup/ebpf}
|
||||
}
|
||||
|
||||
@proceedings{god_ebpf,
|
||||
institution={NCC Group},
|
||||
author = {Jeff Dileo, Andy Olsen},
|
||||
organization= {35C3},
|
||||
eventtitle = {Kernel Tracing With eBPF Unlocking God Mode on Linux},
|
||||
url = {https://berlin-ak.ftp.media.ccc.de/congress/2018/slides-pdf/35c3-9532-kernel_tracing_with_ebpf.pdf}
|
||||
}
|
||||
|
||||
@online{bad_ebpf,
|
||||
author = {Pat Hogan},
|
||||
organization= {DEFCON 27},
|
||||
@@ -60,6 +87,12 @@
|
||||
url = {https://www.youtube.com/watch?v=g6SKWT7sROQ}
|
||||
},
|
||||
|
||||
@online{bad_ebpf_github,
|
||||
author={Pat Hogan},
|
||||
title={Bad BPF},
|
||||
url={https://github.com/pathtofile/bad-bpf}
|
||||
}
|
||||
|
||||
@online{ebpf_windows,
|
||||
title={eBPF incorporation in the Linux Kernel 3.18},
|
||||
date={2014-12-07},
|
||||
@@ -919,6 +952,31 @@ Userland Linux Rootkits},
|
||||
@online{usermode_helper_lkm,
|
||||
title={call\_usermodehelper, Module Loading},
|
||||
url={https://www.kernel.org/doc/htmldocs/kernel-api/API-call-usermodehelper.html}
|
||||
},
|
||||
|
||||
@online{rasps,
|
||||
title={RASP rings in a new Java application security paradigm},
|
||||
author={Hussein Badakhchani},
|
||||
date={2016-10-20},
|
||||
url={https://www.infoworld.com/article/3125515/rasp-rings-in-a-new-java-application-security-paradigm.html}
|
||||
},
|
||||
|
||||
@online{sql_injection,
|
||||
title={SQL Injection},
|
||||
url={https://www.w3schools.com/sql/sql_injection.asp}
|
||||
},
|
||||
|
||||
@online{boopkit,
|
||||
title={Boopkit},
|
||||
author={Kris Nóva},
|
||||
url={https://github.com/kris-nova/boopkit}
|
||||
},
|
||||
|
||||
@online{symbiote,
|
||||
title={Symbiote: A New, Nearly-Impossible-to-Detect Linux Threat},
|
||||
institution={The BlackBerry Research & Intelligence Team},
|
||||
date={2022-06-09},
|
||||
url={https://blogs.blackberry.com/en/2022/06/symbiote-a-new-nearly-impossible-to-detect-linux-threat}
|
||||
}
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user