CERN-CERT / activity_klog
Ccollection of Linux loadable kernel modules aimed to logs any user action
☆25Updated 5 years ago
Alternatives and similar repositories for activity_klog:
Users that are interested in activity_klog are comparing it to the libraries listed below
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 6 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆42Updated 8 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- yara rules for crypto detection☆30Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- Memory forensics of virtualization environments☆46Updated 10 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- r2yara - Module for Yara using radare2 information☆34Updated last year
- An automated collection and analysis of malware from my honeypots.☆25Updated 7 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 8 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 9 years ago
- Linux-KVM with rVMI extensions☆22Updated 7 years ago
- Basic file metadata gathering script☆21Updated 3 years ago
- Python script to efficiently find files on UNIX like file systems with specific properties (quicker than find)☆18Updated 9 years ago
- POC for IAT Parsing Payloads☆47Updated 8 years ago
- ☆15Updated 8 years ago
- ☆50Updated 8 years ago
- collection of python scripts to capture dns traffic and store it in elasticsearch☆8Updated 3 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 3 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- Yara Plugin for Binary Ninja☆13Updated 7 years ago
- ☆19Updated 6 years ago
- Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003☆20Updated 10 years ago
- It's like DocBleach, but in your browser☆18Updated 5 years ago