0x00000013 / huakiwi
eBPF-based EDR for Linux
☆17Updated 7 months ago
Alternatives and similar repositories for huakiwi:
Users that are interested in huakiwi are comparing it to the libraries listed below
- Collect autorun records from running system☆61Updated 3 years ago
- Golang Port Knocking for Linux + Windows☆16Updated 3 years ago
- This tool have the power to hide any PID/directory in the Linux kernel☆23Updated 7 months ago
- #️⃣ 🕸️ 👤 HTTP Headers Hashing☆13Updated last year
- Go implementation of the Community ID flow hashing standard☆20Updated last month
- E4's C2 server☆20Updated 4 years ago
- Hacky linux memory probe. Yara or Regex scan process memory☆11Updated last year
- Look into EDR events from network☆23Updated last year
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆57Updated 2 years ago
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆23Updated 2 years ago
- Static configuration extractor for the Karton framework☆10Updated 2 months ago
- Golang parser for OLE files☆31Updated last month
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 3 years ago
- A Portable Executable parser for Golang☆46Updated 3 months ago
- CLI and Go package for fast, offline ASN lookups☆17Updated last month
- Checks for tpm vulnerabilities☆37Updated 2 years ago
- Linux based vulnerabilities (CVE) exploit detection through runtime security using Falco/Osquery/Yara/Sigma☆21Updated last year
- An eBPF detection program for CVE-2022-0847☆28Updated 2 years ago
- ☆86Updated 9 months ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- ssdeep cluster analysis for malware files☆30Updated 4 years ago
- ☆33Updated 4 years ago
- 🚀 A lightweight, fast, and comprehensive solution for traffic analysis and intrusion detection.☆20Updated last week
- Utility to inject honey tokens into lsass.☆28Updated 8 years ago
- Loads a program into a memfd and runs it.☆12Updated 2 years ago
- Tiny embeddable dns server☆46Updated this week
- Code for BH21 talk: "Generating YARA Rules by Classifying Malicious Byte Sequences"☆17Updated 2 months ago
- Repository of Yara rules created by the Stratosphere team☆26Updated 3 years ago
- An NTFS file parser in Go☆69Updated 3 weeks ago
- lightweight CVE search☆21Updated 2 years ago