eeriedusk / knockles
eBPF Port Knocking Tool
☆232Updated last year
Alternatives and similar repositories for knockles:
Users that are interested in knockles are comparing it to the libraries listed below
- Linux Process Discovery. C Library, Go bindings, Runtime.☆220Updated 2 years ago
- Process behaviour anomaly detection using eBPF and unsupervised-learning Autoencoders☆130Updated 2 years ago
- Credentials Dumper for Linux using eBPF☆1,129Updated 4 months ago
- An eBPF playground☆201Updated last year
- monitor and protect SSH sessions with eBPF☆66Updated 3 years ago
- NIST-based CVE lookup store and API powered by Rust.☆128Updated 3 months ago
- Utility to find hidden Linux kernel modules☆145Updated last month
- Tricking shells into interactive mode when local PTY's are not available☆143Updated 2 years ago
- Red Canary's eBPF Sensor☆101Updated 6 months ago
- A Rust library for managing eBPF programs.☆116Updated 11 months ago
- Paused mirror. Official repository at https://git.glasklar.is/system-transparency/core/stboot☆111Updated last year
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆183Updated last year
- ☆85Updated 6 months ago
- 🦠 NVMe-TCP at your fingertips 🦠☆295Updated 8 months ago
- ebpfkit is a rootkit powered by eBPF☆775Updated last year
- A fancy-schmancy tcpdump-esque TUI, programmed in Go.☆368Updated 2 years ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆154Updated 4 months ago
- Zaps arguments and environment from the process list☆192Updated 9 months ago
- Execute ELF files without dropping them on disk☆487Updated 7 months ago
- ☆245Updated 3 years ago
- Intercept stdin/stdout/stderr for any process☆198Updated 2 years ago
- eBPF hacks☆181Updated last month
- Blessed sanctum, save us || Sanctum is a small, reviewable, capable and fully privilege seperated VPN daemon. || This is a read-only mirr…☆46Updated 3 weeks ago
- ☆52Updated 3 weeks ago
- It's strace, with colours.☆271Updated 2 years ago
- Silly usage of AWS EC2 IPv6 prefixes☆321Updated 3 years ago
- An eBPF detection program for CVE-2022-0847☆28Updated 2 years ago
- Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG App…☆56Updated this week
- Windows x64 handcrafted token stealing kernel-mode shellcode☆504Updated 9 months ago
- The Noisy Sockets CLI☆254Updated 4 months ago