Asbatel / ContainerHIDSLinks
Contextualizing System Calls in Containers for Anomaly-Based Intrusion Detection (CHIDS) - CCSW'22
☆25Updated 2 years ago
Alternatives and similar repositories for ContainerHIDS
Users that are interested in ContainerHIDS are comparing it to the libraries listed below
Sorting:
- This repository is used to analysis the shared resources of different containers☆31Updated last year
- ☆16Updated last year
- LID-DS is an intrusion detection data simulation framework.☆53Updated 7 months ago
- Dataset from Linux Raspian VMs and devices with auditd logs capturing various container escape and attacks.☆14Updated 3 years ago
- eAudit suite for recording provenance-related system calls on Linux☆14Updated 2 years ago
- This repository contains the code for the paper "A flow-based IDS using Machine Learning in eBPF", Contact: Maximilian Bachl☆109Updated 4 months ago
- Have fun with audit log analysis :)☆153Updated last year
- PalanTír: Optimizing Attack Provenance with Hardware-enhanced System Observability, ACM CCS'22☆24Updated last year
- A general cross-architecture C/C++ hotpatch solution using customized userspace eBPF runtime. One patch release can fix the same vulnera…☆27Updated 2 years ago
- This is the repository for the code and artifacts related to the CCS2022 paper: C2C: Fine-grained Configuration-driven System Call Filter…☆11Updated 3 years ago
- GAINS: Getting stArted wIth biNary analysiS☆31Updated 3 years ago
- ☆102Updated 5 years ago
- BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.☆59Updated 3 years ago
- Source code of AsiaCCS'22 paper - RecIPE: Revisiting the Evaluation of Memory Error Defenses☆13Updated 2 years ago
- ☆78Updated 9 months ago
- Themis: Ambiguity-Aware Network Intrusion Detection based on Symbolic Model Comparison☆23Updated 2 years ago
- An implementation of the paper "ELF-Miner: Using Structural Knowledge and Data Mining Methods To Detect New (Linux) Malicious Executables…☆15Updated 6 years ago
- ATLAS: A Sequence-based Learning Approach for Attack Investigation☆170Updated 3 years ago
- ☆28Updated 4 years ago
- Flow Interaction Graph based attack traffic detection system.☆180Updated last year
- ☆18Updated 2 years ago
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities | 🏆 Best Practical Paper Award of RAID 2024☆76Updated 2 months ago
- dataSet for kubAnomaly model☆20Updated 2 years ago
- ☆61Updated 3 years ago
- Usenix Security'23☆16Updated 2 years ago
- Evading Provenance-Based ML Detectors with Adversarial System Actions☆33Updated last year
- TensorFlow API analysis tool and malicious model detection tool☆37Updated 6 months ago
- 该资源是各种溯源图相关的论文和资源总结(含PPT),涉及APT攻击检测、入侵检测、流量日志检测、系统安全等领域,希望对大家有所帮助~☆165Updated 2 years ago
- Material from the DARPA Transparent Computing Program☆222Updated 5 years ago
- ☆26Updated 2 years ago