From c000e812a6a402ea7380cdd817f6d95ad6619366 Mon Sep 17 00:00:00 2001 From: Abyss Watcher Date: Mon, 27 Jan 2025 19:40:47 +0100 Subject: [PATCH] tune with the new additional_description mechanism --- volatility3/framework/plugins/linux/tracing/ftrace.py | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/volatility3/framework/plugins/linux/tracing/ftrace.py b/volatility3/framework/plugins/linux/tracing/ftrace.py index 99961c931..29216187c 100644 --- a/volatility3/framework/plugins/linux/tracing/ftrace.py +++ b/volatility3/framework/plugins/linux/tracing/ftrace.py @@ -62,12 +62,13 @@ class ParsedFtraceOps: class CheckFtrace(interfaces.plugins.PluginInterface): - """Detect ftrace hooking""" + """Detect ftrace hooking + + Investigate the ftrace infrastructure to uncover kernel attached callbacks, which can be leveraged + to hook kernel functions and modify their behaviour.""" _version = (1, 0, 0) _required_framework_version = (2, 19, 0) - additional_description = """Investigate the ftrace infrastructure to uncover kernel attached callbacks, which can be leveraged - to hook kernel functions and modify their behaviour.""" @classmethod def get_requirements(cls) -> List[interfaces.configuration.RequirementInterface]: