Asbatel / ContainerHIDS
Contextualizing System Calls in Containers for Anomaly-Based Intrusion Detection - CCSW'22
☆20Updated last year
Alternatives and similar repositories for ContainerHIDS:
Users that are interested in ContainerHIDS are comparing it to the libraries listed below
- This repository is used to analysis the shared resources of different containers☆28Updated 2 months ago
- Have fun with audit log analysis :)☆147Updated 8 months ago
- ☆96Updated 4 years ago
- Usenix Security'23☆13Updated last year
- LID-DS is an intrusion detection data simulation framework.☆46Updated 8 months ago
- Evading Provenance-Based ML Detectors with Adversarial System Actions☆27Updated 5 months ago
- ☆62Updated 4 months ago
- PalanTír: Optimizing Attack Provenance with Hardware-enhanced System Observability, ACM CCS'22☆18Updated 2 months ago
- ☆18Updated 4 years ago
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities (Best Practical Paper Award of RAID 2024)☆43Updated 2 weeks ago
- GAINS: Getting stArted wIth biNary analysiS☆30Updated 2 years ago
- ☆11Updated 5 years ago
- ☆16Updated 4 months ago
- ATLAS: A Sequence-based Learning Approach for Attack Investigation☆146Updated 2 years ago
- SHADEWATCHER: Recommendation-guided Cyber Threat Analysis using System Audit Records, Oakland'22☆79Updated last year
- ☆64Updated last year
- ☆54Updated 8 months ago
- ☆96Updated last year
- TensorFlow API analysis tool and malicious model detection tool☆19Updated last month
- Material from the DARPA Transparent Computing Program☆185Updated 4 years ago
- ☆22Updated 4 years ago
- APT-KGL: An Intelligent APT Detection System Based on Threat Knowledge and Heterogeneous Provenance Graph Learning☆61Updated 2 years ago
- The official repository of "GraphSPD: Graph-Based Security Patch Detection with Enriched Code Semantics". The paper will appear in the IE…☆42Updated last year
- Datasets used in the StreamSpot experiments☆54Updated 8 years ago
- ☆60Updated 2 years ago
- Some personal work on DARPA TC engagement5☆17Updated last year
- ☆24Updated 3 months ago
- A general cross-architecture C/C++ hotpatch solution using customized userspace eBPF runtime. One patch release can fix the same vulnera…☆25Updated last year
- 该资源是各种溯源图相关的论文和资源总结(含PPT),涉及APT攻击检测、入侵检测、流量日志检测、系统安全等领域,希望对大家有所帮助~☆150Updated last year
- ☆14Updated 3 years ago