Asbatel / ContainerHIDSLinks
Contextualizing System Calls in Containers for Anomaly-Based Intrusion Detection - CCSW'22
☆22Updated 2 years ago
Alternatives and similar repositories for ContainerHIDS
Users that are interested in ContainerHIDS are comparing it to the libraries listed below
Sorting:
- This repository is used to analysis the shared resources of different containers☆30Updated 9 months ago
- ☆16Updated 11 months ago
- PalanTír: Optimizing Attack Provenance with Hardware-enhanced System Observability, ACM CCS'22☆23Updated 8 months ago
- For paper Container-IMA: https://www.usenix.org/system/files/raid2019-luo.pdf☆11Updated 5 years ago
- eAudit suite for recording provenance-related system calls on Linux☆13Updated last year
- LID-DS is an intrusion detection data simulation framework.☆50Updated 2 months ago
- Dataset from Linux Raspian VMs and devices with auditd logs capturing various container escape and attacks.☆13Updated 3 years ago
- Have fun with audit log analysis :)☆154Updated last year
- GAINS: Getting stArted wIth biNary analysiS☆31Updated 3 years ago
- A general cross-architecture C/C++ hotpatch solution using customized userspace eBPF runtime. One patch release can fix the same vulnera…☆26Updated last year
- Source code of AsiaCCS'22 paper - RecIPE: Revisiting the Evaluation of Memory Error Defenses☆13Updated last year
- TensorFlow API analysis tool and malicious model detection tool☆33Updated 2 months ago
- ☆61Updated 3 years ago
- ☆101Updated 4 years ago
- This is a benchmark for evaluating the vulnerability discovery ability of automated approaches including Large Language Models (LLMs), de…☆69Updated 8 months ago
- ☆13Updated 3 years ago
- Usenix Security'23☆16Updated 2 years ago
- This repository contains the code for the paper "A flow-based IDS using Machine Learning in eBPF", Contact: Maximilian Bachl☆101Updated last year
- An implementation of the paper "ELF-Miner: Using Structural Knowledge and Data Mining Methods To Detect New (Linux) Malicious Executables…☆15Updated 6 years ago
- This repository contains the source code related to the research paper titled "Temporal System Call Specialization for Attack Surface Red…☆37Updated 8 months ago
- ☆28Updated 3 years ago
- ☆36Updated 2 years ago
- ATLAS: A Sequence-based Learning Approach for Attack Investigation☆165Updated 2 years ago
- Material from the DARPA Transparent Computing Program☆198Updated 5 years ago
- A collection of security papers on top-tier publications☆48Updated last week
- ☆71Updated 5 months ago
- Hey folks, this is a repository for papers on LLM for Vuln. Detection area☆55Updated 4 months ago
- BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.☆59Updated 3 years ago
- Generates kernel patch for CamFlow Linux Provenance Capture.☆27Updated last year
- This is the official repository for VulHawk.☆71Updated 2 years ago