0x00000013 / huakiwiLinks
eBPF-based EDR for Linux
☆18Updated last year
Alternatives and similar repositories for huakiwi
Users that are interested in huakiwi are comparing it to the libraries listed below
Sorting:
- Golang Port Knocking for Linux + Windows☆18Updated 3 years ago
- This tool have the power to hide any PID/directory in the Linux kernel☆30Updated last year
- Tiny embeddable dns server☆55Updated this week
- ☆89Updated 2 weeks ago
- Checks for tpm vulnerabilities☆38Updated 2 years ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆59Updated 3 years ago
- Look into EDR events from network☆25Updated last month
- A Portable Executable parser for Golang☆48Updated last month
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- Red Canary's eBPF Sensor☆112Updated 6 months ago
- Hybrid memory/disk map☆61Updated 2 weeks ago
- Provides a multi-platform Graphical User Interface for hashlookup☆12Updated last year
- ☆42Updated 3 years ago
- Loads a program into a memfd and runs it.☆11Updated 3 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- YARI is an interactive debugger for YARA Language.☆90Updated 3 months ago
- Collect autorun records from running system☆59Updated 3 years ago
- Recog-Go: Pattern Recognition using Rapid7 Recog☆119Updated 2 years ago
- Sandfly Linux Stealth Rootkit Decloaking Utility☆107Updated 2 years ago
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆167Updated last year
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆29Updated 2 months ago
- Pure Go rewrite of knockknock☆11Updated 2 years ago
- ☆63Updated 2 years ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆79Updated 2 years ago
- JA4TScan is an active TCP server fingerprinting tool.☆97Updated last year
- 🚀 A lightweight, fast, and comprehensive solution for traffic analysis and intrusion detection.☆23Updated this week
- Mara is a userland pty/tty sniffer☆53Updated last year
- Linpmem is a linux memory acquisition tool☆94Updated 5 months ago
- 🚧 Currently transfering TLP:CLEAR rules from TLP:AMBER repository...☆21Updated last year
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆95Updated last year