0x00000013 / huakiwiLinks
eBPF-based EDR for Linux
☆18Updated last year
Alternatives and similar repositories for huakiwi
Users that are interested in huakiwi are comparing it to the libraries listed below
Sorting:
- Golang Port Knocking for Linux + Windows☆18Updated 3 years ago
- Tiny embeddable dns server☆55Updated this week
- Look into EDR events from network☆25Updated last month
- WhiteBeam: Transparent endpoint security☆101Updated 2 years ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆59Updated 3 years ago
- This tool have the power to hide any PID/directory in the Linux kernel☆30Updated last year
- JA4TScan is an active TCP server fingerprinting tool.☆101Updated last year
- Provides a multi-platform Graphical User Interface for hashlookup☆12Updated last year
- ☆89Updated last month
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- Loads a program into a memfd and runs it.☆11Updated 3 years ago
- Red Canary's eBPF Sensor☆112Updated 7 months ago
- Detect and remove the presence of canary tokens☆24Updated 2 years ago
- YARI is an interactive debugger for YARA Language.☆90Updated 4 months ago
- Hybrid memory/disk map☆62Updated 2 weeks ago
- ☆43Updated 3 years ago
- Checks for tpm vulnerabilities☆38Updated 2 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆96Updated last year
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆29Updated 3 months ago
- A Portable Executable parser for Golang☆48Updated 2 months ago
- ☆63Updated 2 years ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆79Updated 2 years ago
- Linux rust keylogger☆17Updated last year
- Go library to allow native inline hooking in windows at runtime☆14Updated last year
- 🚧 Currently transfering TLP:CLEAR rules from TLP:AMBER repository...☆21Updated last year
- Mara is a userland pty/tty sniffer☆53Updated 2 years ago
- Linux based vulnerabilities (CVE) exploit detection through runtime security using Falco/Osquery/Yara/Sigma☆21Updated 2 years ago
- RustHunter is a modular incident response framework based on Rust and Ansible to build and compare environmental baselines.☆18Updated last month
- Imphash-like calculation on Golang binaries☆49Updated 3 years ago