Skip to main content

strace-ltrace

Use strace and ltrace for authorized syscall and library-call tracing of provided binaries and processes.

소스 정보

저장소
Aethena-Lab/Z3r0
최근 소스 활동
2026년 9월 3일 10:00
감지된 SKILL.md 언어
영어
스타
912
포크
200

설치 방법

기본적으로 소스를 먼저 확인하는 Prompt가 선택됩니다. 직접 명령으로 전환하거나 로컬 사본을 다운로드할 수도 있습니다.

소스 파일 검토

설치 여부를 결정하기 전에 SKILL.md와 SkillsMP에 표시된 보조 파일을 읽어 보세요.

SKILL.md 표시 중

SKILL.md
소스 지침 · 읽기 전용 미리보기
name
strace-ltrace
description
Use strace and ltrace for authorized syscall and library-call tracing of provided binaries and processes.
# strace-ltrace Use `strace` and `ltrace` for syscall and library-call tracing during authorized runtime analysis. ## Help first Before constructing commands, use installed help or version output as the source of truth: ```sh strace --help ltrace --help ``` ## Usage rules - Trace only provided binaries, task-scoped test programs, or authorized processes. - Save traces to files for anything beyond a short bounded run. - Set follow-fork, string length, syscall filters, and timeout behavior deliberately. - Treat command-line arguments, environment values, file paths, and network endpoints as potentially sensitive. - Do not run untrusted samples unless execution is explicitly authorized. ## Common workflows Trace a short local run and follow child processes: ```sh strace -f -s 256 -o strace.log -- ./program arg1 ``` Focus on file, process, and network syscalls: ```sh strace -f -s 256 -e trace=file,process,network -o strace-focused.log -- ./program ``` Trace dynamic library calls when the binary is dynamically linked: ```sh ltrace -f -o ltrace.log -- ./program arg1 ``` Attach only to authorized processes: ```sh strace -p 1234 -o strace-pid.log ``` ## Output Report traced program or PID, command used, output path, notable syscalls or library calls, and any sensitive data handling.
GitHub에서 보기