ptrace (process trace) is a system call found in Unix and Unix-like operating systems such as Linux. ptrace provides the means for a program to patch running programs, avoid unfixed bugs, and as a debugger.
https://man7.org/linux/man-pages/man2/ptrace.2.html
Links to this note
- proc_connector
- io_uringblindspotrootkits-toulas2025
- armouringtheelf-grugq_scut2001
- Linux Persistence: Processes
- TracerPid
- Linux Persistence: SSH
- selinuxsystemadministration_vermeulen2020
- learninglinuxbinaryanalysis-oneill2016
- runtimeprocessinfection-anonymous2002
- baines2016
- cesare1999
- 3snake
- ltrace
- ptrace request
- PTRACE_SYSCALL
- strace
- Yama