mark-ignacio / bedr
a BPF-based Linux syscall monitor
☆10Updated 5 years ago
Alternatives and similar repositories for bedr:
Users that are interested in bedr are comparing it to the libraries listed below
- Docker projects to retain beacon source IPs using C2 relaying infra☆11Updated 5 years ago
- Environmental (and http) keying for scripting languages☆39Updated 6 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- A set of compiled application restriction bypasses☆29Updated 7 years ago
- ☆30Updated 6 years ago
- Parsing MITRE EDR Evaluation results☆12Updated 6 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- windows-operating-system-archaeology @Enigma0x3 @subTee☆44Updated 7 years ago
- IoC's, PCRE's, YARA's etc☆22Updated 2 months ago
- The SSH Multiplex Backdoor Tool☆63Updated 5 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- DNS server limitation mapper☆26Updated 6 years ago
- ☆47Updated 5 years ago
- Cobalt Strike log state tracking, parsing, and storage☆22Updated 5 years ago
- A CLI tool for querying passive DNS services☆41Updated last year
- Slides from my AD Privesc talk at WAHCKon 2017☆16Updated 7 years ago
- Duo MFA auditing tool to test users' likelihood of approving unexpected push notifications☆13Updated 6 years ago
- Basic file metadata gathering script