Linux rootkit for Ubuntu 16.04 and 10.04 (Linux Kernels 4.4.0 and 2.6.32), both i386 and amd64
Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.
This is the list of all rootkits found so far on github and other sites.
Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.
LibZeroEvil & the Research Rootkit project.
Python Remote Administration Tool (RAT) to gain meterpreter session
LKM Linux rootkit
Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.
HORSEPILL rootkit PoC
Windows Anti-Rootkit Tool
XNU Rootkit Framework
Kernel-Mode Rootkit Hunter
BEURK Experimental Unix RootKit
An usermode BE Rootkit Bypass
#安卓#A rootkit for Android. Based on "Android platform based linux kernel rootkit" from Phrack Issue 68