Intercepting a system call
Paul Davies C
pauldaviesc at gmail.com
Fri Jan 25 09:05:14 EST 2013
You can access the code also from the below link.
On Fri, Jan 25, 2013 at 6:58 PM, Paul Davies C <pauldaviesc at gmail.com>wrote:
>  is the module I wrote for intercepting the system call fork(). I
> have taken the conventional way of hooking the system call. Firstly I found
> out the address of the sys_call_table from the System.map. Then I used it
> in the module to substitute for the original fork() with my own version of
> fork.My version does nothing more than printing a message and returning the
> original fork(). It didn't gave any errors when loaded to kernel using the
> insmod. However it seems that the module had no affect on the
> sys_call_table since the fork() is working perfectly after the insertion
> of module and it does not show me the message it was supposed to print. Can
> someone figure out the problem? I am using 3.2.0-4-686 version of kernel.
>  http://pastebin.com/aWN3jdQU
> *Paul Davies C*
*Paul Davies C*
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Kernelnewbies