MatheuZSecurity / detect-lkm-rootkit-cheatsheetLinks
Cheat sheet to detect and remove linux kernel rootkit
☆78Updated last year
Alternatives and similar repositories for detect-lkm-rootkit-cheatsheet
Users that are interested in detect-lkm-rootkit-cheatsheet are comparing it to the libraries listed below
Sorting:
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆36Updated last year
- ☆72Updated last year
- This repository is meant to catalog network and host artifacts associated with various EDR products "shell" and response functionalities.☆92Updated last year
- Make an Linux Kernel rootkit visible again.☆59Updated 11 months ago
- ☆39Updated last year
- Collection of codes focused on Linux rootkits☆195Updated 3 months ago
- ☆37Updated last year
- Tools for analyzing EDR agents☆276Updated last year
- ☆105Updated last year
- Vibe Malware Triage - MCP server for static PE analysis.☆74Updated 2 months ago
- Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)☆146Updated last year
- Linux #rootkit and #malware revealer☆30Updated last year
- BSides Prishtina 2024 Malware Development and Persistence workshop☆124Updated last month
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆143Updated last month
- Offensive Lua.☆221Updated 2 months ago
- Analyse MSI files for vulnerabilities☆141Updated last year
- Linpmem is a linux memory acquisition tool☆95Updated 7 months ago
- ☆133Updated 2 years ago
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆85Updated last year
- A prototype malware C2 channel using x509 certificates over mTLS☆152Updated last year
- ☆120Updated 2 years ago
- ☆164Updated 10 months ago
- An interactive shell to spoof some LOLBins command line☆188Updated 2 years ago
- ☆84Updated last year
- This is practice VM for malware development☆179Updated 2 months ago
- Powershell Linter☆86Updated last month
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆79Updated last week
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 11 months ago
- ☆122Updated last month