CERN-CERT / activity_klogLinks
Ccollection of Linux loadable kernel modules aimed to logs any user action
☆26Updated 6 years ago
Alternatives and similar repositories for activity_klog
Users that are interested in activity_klog are comparing it to the libraries listed below
Sorting:
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 8 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- yara rules for crypto detection☆31Updated 11 years ago
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 6 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- iknowthis Linux SystemCall Fuzzer☆20Updated 6 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Print the strings of encoded printable characters in files☆12Updated 9 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- Proof-of-concept that makes a guess at what applications are being tunneled through an SSH session. It works primarily by analyzing packe…☆10Updated 11 years ago
- Public documents about bachelor thesis "Reverse Engineering Analysis of the NDIS 6.* stack"☆41Updated 8 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 8 months ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 4 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software☆55Updated 5 years ago
- Homographs: brutefind homographs within a font☆18Updated 8 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- Linux-KVM with rVMI extensions☆22Updated 7 years ago
- collection of python scripts to capture dns traffic and store it in elasticsearch☆8Updated 4 years ago
- ☆50Updated 9 years ago
- ☆12Updated 8 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆42Updated 8 years ago
- Analyzes open source bug trackers for interesting vulnerabilities☆23Updated 10 years ago
- r2yara - Module for Yara using radare2 information☆35Updated last year