korczis / libnidsLinks
Libnids is an implementation of an E-component of Network Intrusion Detection System. It emulates the IP stack of Linux 2.0.x. Libnids offers IP defragmentation, TCP stream assembly and TCP port scan detection.
☆53Updated 9 years ago
Alternatives and similar repositories for libnids
Users that are interested in libnids are comparing it to the libraries listed below
Sorting:
- A Linux kernel module that locates the system call table in memory and hooks uname. Contributions welcome!☆58Updated 12 years ago
- It is a platform to use multiprocess to combine dpdk and libnids together to support analyse packets in 10G port.☆38Updated 10 years ago
- ☆25Updated 12 years ago
- Slides, codes and videos of the talk "DEP/ASLR bypass without ROP/JIT" on CanSecWest 2013☆49Updated 12 years ago
- A library for efficient interception of established TCP connections☆19Updated 9 years ago
- Some kernel exploit i wrote☆76Updated 10 years ago
- Reassembles UDP/TCP packets into application layer messages.☆42Updated 7 years ago
- Advanced process execution monitoring utility for linux (procmon like)☆85Updated 9 years ago
- A LKM rootkit for Linux kernel 2.6.x, 3.x and 4.x☆43Updated 9 years ago
- Linux kernel module for inspecting/modifying TCP socket state from user space☆92Updated 2 years ago
- A multi-threading tool to sniff TCP flow statistics and embedded HTTP headers from PCAP file. Each TCP flow carrying HTTP is exported to …☆190Updated this week
- User-friendly C Library to perform TCP streams reassembly and IPv4/6 defragmentation☆109Updated 7 years ago
- sample code for educate myself-_-☆43Updated 9 years ago
- DSSL library: network capture and SSL decryption toolkit☆25Updated 5 years ago
- PHP extension for web-application dynamic analysis.☆27Updated 6 years ago
- 一个基于lua插件的pcap监控工具。☆27Updated 7 years ago
- ☆32Updated 9 years ago
- Open Source Web Application Firewall Protection Engine☆62Updated 11 years ago
- ☆92Updated 10 years ago
- viewssld is a free, open source, non-terminating SSLv2/SSLv3/TLS traffic decryption daemon for Snort, and other Network Intrusion Detecti…☆74Updated 7 years ago
- A rootkit implemented as a linux kernel module☆17Updated 10 years ago
- --= Xt9 - Anti - Rootkit =-- beta v0.11 by xti9er☆15Updated 4 years ago
- libnids☆112Updated last year
- ☆37Updated 10 years ago
- A dsniff project using bro☆10Updated 9 years ago
- A packet-sniffer for 10gig networks that writes to compressed files. I created this because☆27Updated 8 years ago
- This demonstrates the hijacking of the "write" system call and how to set the System Call table to read/write mode via modifying the corr…☆19Updated 11 years ago
- **NOTE**: This is outdated and no longer maintained. There's a new version at https://github.com/zeek/spicy.☆40Updated 7 years ago
- Signature-free approach library to detect injection and commanding attacks☆94Updated 3 years ago
- You can find *a lot* of libcrafter code right over here☆52Updated 7 years ago