A rootkit for Android. Based on "Android platform based linux kernel rootkit" from Phrack Issue 68
A rootkit for Android. Based on Android platform based linux kernel rootkit from Phrack Issue 68
Part of ISA 673 a class project. Adding it here just because there is not just enough documentation out there to do this for Android
I appreciate any pull requests as long as they extend functionality and dont do harm
Using kernel tree from here
Using ROM image from here
Using Android NDK toolchain 4.4.3 from Google.
Tried and tested on HTC Bravo running kernel version 2.6.38.8
Filename: sys_call_table.ko
Desciption: This rookit is developed to intercept the following calls
Author: Hitesh Dharmdasani [email protected]
License: GPL v2
Depends: Android NDK, Kernel source tree of target
Vermagic: 2.6.38.8-cos-bravo-jellybean+ preempt mod_unload ARMv7
# insmod sys_call_table.ko
# ./sys_call_table_inst
dmesg
to debug