參考資訊:
https://github.com/frida/frida
https://frida.re/docs/functions/
https://frida.re/docs/installation/
main.c
#include <stdio.h> #include <unistd.h> static void test(int v) { printf("%d\n", v); } int main(int argc, char *argv[]) { int cc = 0; printf("test()=%p\n", test); while (1) { test(cc++); usleep(1000000); } return 0; }
hook.py
import sys import frida session = frida.attach("main") script = session.create_script(""" Interceptor.attach(ptr("%s"), { onEnter(args) { args[0] = ptr("9999"); } }); """ % int(sys.argv[1], 16)) script.load() sys.stdin.read()
編譯、執行
$ gcc main.c -o main $ ./main& test()=0x555841a18149 0 1 2 3 4 5 $ python3 ./hook.py 0x555841a18149 9999 9999 9999