CamFlow / camflow-dev
Generates kernel patch for CamFlow Linux Provenance Capture.
☆26Updated 11 months ago
Alternatives and similar repositories for camflow-dev:
Users that are interested in camflow-dev are comparing it to the libraries listed below
- ☆96Updated 4 years ago
- Material from the DARPA Transparent Computing Program☆185Updated 4 years ago
- GAINS: Getting stArted wIth biNary analysiS☆30Updated 2 years ago
- Have fun with audit log analysis :)☆147Updated 8 months ago
- SPADE: Support for Provenance Auditing in Distributed Environments☆174Updated 3 weeks ago
- ☆14Updated 3 years ago
- Contextualizing System Calls in Containers for Anomaly-Based Intrusion Detection - CCSW'22☆20Updated last year
- GraphChi's C++ version. Big Data - small machine.☆16Updated 4 years ago
- ☆11Updated 5 years ago
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities (Best Practical Paper Award of RAID 2024)☆43Updated 2 weeks ago
- ☆28Updated 3 years ago
- ☆74Updated last year
- ebpH (Extended BPF Process Homeostasis) monitors process behavior on your system to establish normal behavioral patterns. ebpH reports an…☆40Updated 2 years ago
- PalanTír: Optimizing Attack Provenance with Hardware-enhanced System Observability, ACM CCS'22☆18Updated 2 months ago
- Datasets used in the StreamSpot experiments☆54Updated 8 years ago
- This repository is used to analysis the shared resources of different containers☆28Updated 2 months ago
- SHADEWATCHER: Recommendation-guided Cyber Threat Analysis using System Audit Records, Oakland'22☆79Updated last year
- KRYSTAL: Knowledge Graph-based Framework for Tactical Attack Discovery in Audit Data☆31Updated 8 months ago
- ☆24Updated 3 months ago
- ☆30Updated 6 months ago
- ☆62Updated 4 months ago
- ☆14Updated 4 years ago
- Discovering Malicious Functionality through Binary Reconstruction☆51Updated 3 years ago
- A general cross-architecture C/C++ hotpatch solution using customized userspace eBPF runtime. One patch release can fix the same vulnera…☆25Updated last year
- Original implementation and resources of DeepCASE as in the S&P '22 paper☆90Updated last year
- ☆18Updated 4 years ago
- Harmonious Unification of Cacophonous Anti-Virus Vendor Labels for Android Malware☆46Updated 5 years ago
- Source code of AsiaCCS'22 paper - RecIPE: Revisiting the Evaluation of Memory Error Defenses☆13Updated last year
- NetPlier: Probabilistic Network Protocol Reverse Engineering from Message Traces☆65Updated 5 months ago
- ☆60Updated 2 years ago