MatheuZSecurity / detect-lkm-rootkit-cheatsheetLinks
Cheat sheet to detect and remove linux kernel rootkit
☆76Updated last year
Alternatives and similar repositories for detect-lkm-rootkit-cheatsheet
Users that are interested in detect-lkm-rootkit-cheatsheet are comparing it to the libraries listed below
Sorting:
- ☆71Updated 10 months ago
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- Vibe Malware Triage - MCP server for static PE analysis.☆73Updated 3 weeks ago
- Collection of codes focused on Linux rootkits☆187Updated 2 months ago
- Make an Linux Kernel rootkit visible again.☆60Updated 9 months ago
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆33Updated 11 months ago
- A Repository to Track Anti-Forensic Techniques☆117Updated 2 years ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆141Updated last week
- ☆39Updated last year
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆127Updated last year
- This repository is meant to catalog network and host artifacts associated with various EDR products "shell" and response functionalities.☆91Updated last year
- ☆37Updated last year
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆74Updated 4 months ago
- ☆34Updated 2 years ago
- Analyse MSI files for vulnerabilities☆140Updated last year
- ☆84Updated last year
- Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)☆146Updated last year
- Linux #rootkit and #malware revealer☆30Updated last year
- A comprehensive tool that provides an insightful analysis of Microsoft's monthly security updates.☆189Updated 2 weeks ago
- This is practice VM for malware development☆170Updated last month
- Powershell Linter☆86Updated 2 weeks ago
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 10 months ago
- ☆55Updated last year
- ☆105Updated last year
- Malware Analysis tools☆26Updated last year
- ☆132Updated 2 years ago
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆37Updated last year
- In-Memory Rootkit For Linux and BSD☆86Updated 4 months ago
- Some of my Malware Analysis writeups☆48Updated 2 months ago
- ELFEN: Automated Linux Malware Analysis Sandbox☆131Updated 4 months ago