flowztul / keyexec
Collection of Scripts to Automatically Unlock LUKS Devices on kexec Reboot
☆57Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for keyexec
- Web of trust grapher☆39Updated 8 months ago
- USBLockout monitors your user session and triggers Grsecurity Deny New USB feature.☆53Updated 7 years ago
- Does your library check TLS certificates properly?☆78Updated last year
- This is a simple utility for enumerating D-Bus endpoints, an nmap for D-Bus.☆76Updated 5 years ago
- Linux netfilter module to toggle evil bit (RFC 3514) in all outgoing IPv4 packets☆27Updated 6 years ago
- Run any command transparently in a VM (this repo isn't part of Cappsule)☆27Updated 7 years ago
- Small and reliable initramfs solution supporting (remote) rescue shell, lvm, dmcrypt luks, software raid, tuxonice, uswsusp and more.☆315Updated last year
- RFC8484 and DoH/JSON resolver☆39Updated last year
- A tool to get root privileges on GNU/Linux, injecting malware early in the boot chain. It also works on systems with root encrypted parti…☆22Updated 2 years ago
- Artifacts for the USENIX publication.☆57Updated 4 years ago
- Install script for grsecurity for Debian environments☆59Updated 8 years ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆194Updated 2 weeks ago
- Create an intuitive and interactive graph of a client's IP traffic☆28Updated 6 years ago
- DNS Firewall Enforcer☆49Updated 5 years ago
- GrSecurity and PaX Patches Before End of Public Release☆63Updated 6 years ago
- Native JACK support for Qubes OS (experimental)☆10Updated 7 years ago
- passe-partout is a tool to extract SSL private keys from process memory written by Nicolas Collignon and Jean-Baptiste Aviat (passe-parto…☆62Updated 6 years ago
- IPv6 network walking utilities (ip6dnswalk, ip6dnshide)☆22Updated 10 years ago
- LD_PRELOAD library for intercepting the plain text of SSL connections made with openssl☆24Updated 9 years ago
- Small EFI utility that clears the power-on and setup passwords in IBM x3550/x3650 M3 servers☆44Updated 4 years ago
- dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software☆56Updated 5 years ago
- ☆58Updated last month
- DHCP option injector☆39Updated 4 years ago
- Recon system hardening scanner☆47Updated 8 years ago
- GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory☆92Updated 6 years ago
- The documentation and build system for the grsecurity kernel maintained by the Freedom of the Press Foundation for SecureDrop☆49Updated 4 years ago
- relros.c applies RELRO to static binaries, and static_to_dyn.c applies ASLR to static binaries.☆33Updated 6 years ago
- Hardened kernel generation - Deprecated☆49Updated 7 years ago
- U2F toolset☆17Updated last year