int3
2025-04-13
int3 is a x86 instruction (0xCC) that triggers a breakpoint interrupt, commonly used by debuggers to pause execution. Read More
kallsyms_lookup_name
2025-04-13
kallsyms_lookup_name is a Linux kernel function that allows the lookup of a symbol’s address by its name. Read More
kernelinstrumentationusingkprobes-elfmaster2010
2025-04-13
Kernel instrumentation using kprobes by ElfMaster November 17, 2010 https://phrack.org/issues/67/6 Notes kprobes kernel patching rootkit backdoor file ... Read More
LIFO
2025-04-13
LIFO (Last In, First Out) is a data organization method commonly used with stack-based data structures. Read More
PaX
2025-04-13
PaX is a set of kernel patches for the Linux kernel that implement memory protection mechanisms to harden systems against memory corruption ... Read More
process image
2025-04-13
A process image is the complete representation of a running program or process in memory. Read More
PT_INTERP
2025-04-13
In ELF binaries, the PT_INTERP program header specifies the path to the dynamic linker. Read More
PT_LOAD
2025-04-13
PT_LOAD is an ELF program header type that specifies which parts of the executable file should be loaded into memory at runtime. Read More
return address
2025-04-13
A return address is the memory location stored on the call stack that tells the CPU where to resume execution after a function call completes. Read More
scope
2025-04-13
In computer programming, scope defines where in a program that a variable or function may be accessed. In a more generalized cybersecurity or software ... Read More