Uroboros 旨在通过提供单一工具来在终端中实时记录、重放和呈现进程运行时信息来填补这一空白,而不会像基于 ptrace 的更具侵入性的解决方案那样影响进程性能。
go
git clone https://github.com/canha/golang-tools-install-script.git bash golang-tools-install-script/goinstall.sh source /root/.bashrc
export GOPROXY=https://goproxy.cn
GO111MODULE=on go get github.com/evilsocket/uroboros/cmd/uro
sudo uro -pid 1234
sudo uro -search test-process
sudo uro -pid 1234 -tabs "cpu, mem, io"
sudo uro -pid 1234 -record /tmp/process-activity.dat
uro -replay /tmp/process-activity.dat