CERN-CERT / activity_klog
Ccollection of Linux loadable kernel modules aimed to logs any user action
☆25Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for activity_klog
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 5 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆42Updated 8 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Test suite for bypassing Malware sandboxes.☆38Updated 10 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆34Updated 7 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- yara rules for crypto detection☆30Updated 10 years ago
- Memory forensics of virtualization environments☆45Updated 10 years ago
- A Ruby wrapper for the SPIKE fuzzer framework☆10Updated 14 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 7 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 4 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆35Updated 8 years ago
- POC for IAT Parsing Payloads☆47Updated 7 years ago
- iknowthis Linux SystemCall Fuzzer☆20Updated 5 years ago
- Print the strings of encoded printable characters in files☆12Updated 9 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 9 years ago
- Normalizer for honeypot data.☆45Updated 9 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 6 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- Remote timing attack exploit against most Zeus/Zbot variants including Citadel, Ice9, Zeus 2.3, KINS/ZeusVM etc..☆24Updated 9 years ago
- Python script to efficiently find files on UNIX like file systems with specific properties (quicker than find)☆18Updated 9 years ago
- intel amt honeypot☆18Updated 7 years ago
- Network sinkhole for isolated malware analysis☆40Updated 6 years ago