CERN-CERT / activity_klogLinks
Ccollection of Linux loadable kernel modules aimed to logs any user action
☆27Updated 6 years ago
Alternatives and similar repositories for activity_klog
Users that are interested in activity_klog are comparing it to the libraries listed below
Sorting:
- yara rules for crypto detection☆31Updated 11 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 9 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- iknowthis Linux SystemCall Fuzzer☆20Updated 6 years ago
- A python implementation of a grep friendly ftrace wrapper☆80Updated 6 years ago
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 6 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 11 years ago
- OS Fingerprint Obfuscation for modern Linux Kernels☆77Updated last year
- ☆16Updated 9 years ago
- Potiron - Normalize, Index and Visualize Network Capture☆87Updated 6 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 4 years ago
- ☆43Updated 7 years ago
- radare, angr, pwndbg, binjitsu, ect in a box ready for pwning☆76Updated 9 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 5 years ago
- dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software☆55Updated 6 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 10 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated last year
- Convert libvirt-QEMU-save (LQS) files to raw memory files☆38Updated 2 years ago
- It's like DocBleach, but in your browser☆18Updated 6 years ago
- Yara Plugin for Binary Ninja☆13Updated 7 years ago
- The plugin repository for Honeycomb, the honeypot framework by Cymmetria☆26Updated 2 years ago
- Whitelisting LD_PRELOAD libraries using LD_AUDIT☆63Updated 4 years ago
- YAPDNS☆39Updated 10 years ago
- Data Exfiltration and Command Execution via AAAA Records☆67Updated 9 years ago
- Troje is a honeypot built around lxc containers. It will run each connection with the service within a seperate lxc container.☆44Updated 11 years ago
- A small wriiteup and a PoC tool about how to use SO_REUSADDR for firewall evasion☆27Updated 9 years ago
- Print the strings of encoded printable characters in files☆12Updated 10 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆44Updated 8 years ago