surftrace
surftrace copied to clipboard
surftrace is a tool that allows you to surf the linux kernel
just like the bpftrace, its better to enable trace an running program in user-space and navigate/ traverse its argument and member field of the argument when it is a complex...
工具非常好用,用起来很方便。希望能够进一步支持自己开发的ko、或修改过的发行版ko
data:image/s3,"s3://crabby-images/e6468/e64683d635e1dd63a455b5872b13372a0a385ea2" alt="image"
样例: bpfPog = r""" #include "lbc.h" #define S_IFMT 00170000 #define S_IFSOCK 0140000 #define S_IFREG 0100000 #define S_ISREG(m) (((m) & S_IFMT) == S_IFREG) #define S_ISSOCK(m) (((m) & S_IFMT) == S_IFSOCK) #define...
类似bpftrace中的通配符 data:image/s3,"s3://crabby-images/048b9/048b99cf1eaf82c2dab66e220f0c1fc5379b0ec5" alt="image" surftrace "e syscalls/sys_enter_exec*" 当前版本 0.4.12 还不支持 data:image/s3,"s3://crabby-images/c54f7/c54f75152f54752ad064b24c031b592da2a8d34b" alt="image"
The **remote compile** is a very useful feature, but there are too few [kernel versions supported](https://mirrors.openanolis.cn/coolbpf/db/x86_64/) still now, Do you have any plans to support more kernel versions ?? Any...