Module src.bigbrother

Onionr - Private P2P Communication.

Processes interpreter hook events to detect security leaks

Expand source code
"""Onionr - Private P2P Communication.

Processes interpreter hook events to detect security leaks
"""
import sys
from typing import Iterable

from onionrexceptions import PythonVersion
from . import ministry
"""
    This program is free software: you can redistribute it and/or modify
    it under the terms of the GNU General Public License as published by
    the Free Software Foundation, either version 3 of the License, or
    (at your option) any later version.

    This program is distributed in the hope that it will be useful,
    but WITHOUT ANY WARRANTY; without even the implied warranty of
    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
    GNU General Public License for more details.

    You should have received a copy of the GNU General Public License
    along with this program.  If not, see <https://www.gnu.org/licenses/>.
"""


def _auditing_supported():
    try:
        sys.audit
        sys.addaudithook
    except AttributeError:
        raise PythonVersion('Auditing not supported interpreter')


def sys_hook_entrypoint(event, info):
    """Entrypoint for big brother sys auditors."""
    if event == 'socket.connect':
        ministry.ofcommunication.detect_socket_leaks(info)
    elif event == 'exec':
        # logs and block both exec and eval
        ministry.ofexec.block_exec(event, info)
    elif event == 'system':
        ministry.ofexec.block_system(info)


def enable_ministries(disable_hooks: Iterable = None):
    """Enable auditors."""
    disable_hooks = disable_hooks or []
    _auditing_supported()  # raises PythonVersion exception if <3.8
    sys.addaudithook(sys_hook_entrypoint)

Sub-modules

src.bigbrother.ministry

Functions

def enable_ministries(disable_hooks=None)

Enable auditors.

Expand source code
def enable_ministries(disable_hooks: Iterable = None):
    """Enable auditors."""
    disable_hooks = disable_hooks or []
    _auditing_supported()  # raises PythonVersion exception if <3.8
    sys.addaudithook(sys_hook_entrypoint)
def sys_hook_entrypoint(event, info)

Entrypoint for big brother sys auditors.

Expand source code
def sys_hook_entrypoint(event, info):
    """Entrypoint for big brother sys auditors."""
    if event == 'socket.connect':
        ministry.ofcommunication.detect_socket_leaks(info)
    elif event == 'exec':
        # logs and block both exec and eval
        ministry.ofexec.block_exec(event, info)
    elif event == 'system':
        ministry.ofexec.block_system(info)