The Linux port of the Sysinternals Sysmon tool.
☆282Mar 27, 2026Updated last week
Alternatives and similar repositories for SysinternalsEBPF
Users that are interested in SysinternalsEBPF are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Sysmon for Linux☆2,086Mar 27, 2026Updated last week
- A Linux version of the Procmon Sysinternals tool☆4,651Mar 25, 2026Updated 2 weeks ago
- An open source library for operating the Windows Overlay Filter driver.☆22Jan 16, 2019Updated 7 years ago
- A Linux version of the ProcDump Sysinternals tool☆3,063Nov 11, 2025Updated 4 months ago
- ☆15Apr 28, 2023Updated 2 years ago
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- ebpfkit is a rootkit powered by eBPF☆839Feb 28, 2023Updated 3 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆121Mar 30, 2026Updated last week
- eBPF kernels and user space tools for BeagleBone SBCs☆10Jan 16, 2022Updated 4 years ago
- Configurations for DFIR ORC☆28Mar 28, 2024Updated 2 years ago
- Example of building and running an eBPF program in Rust☆33Sep 27, 2018Updated 7 years ago
- ☆25Jan 12, 2026Updated 2 months ago
- Dectect syscall hooking using eBPF☆169Apr 28, 2023Updated 2 years ago
- A repository of sysmon configuration modules☆3,007Aug 21, 2024Updated last year
- GoBPFLD is a pure go eBPF loader/userspace library☆20Feb 5, 2022Updated 4 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- iptables-trace is an eBPF enhanced iptables-TRACE alternative iptables TRACE. GPL-3.0 license☆14Feb 3, 2025Updated last year
- Golang Tool to interact with Launchd and other services with XPC☆29May 7, 2020Updated 5 years ago
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆305Nov 30, 2024Updated last year
- A Powershell script for frequency analysis of separated values data files.☆17Jan 22, 2014Updated 12 years ago
- ☆16Apr 16, 2017Updated 8 years ago
- A K8s ClusterIP HTTP monitoring library based on eBPF☆18May 23, 2021Updated 4 years ago
- This repository includes the parsers necessary for Microsoft Network Monitor to parse etl logs generated by Packet Monitor (Pktmon).☆22Aug 30, 2022Updated 3 years ago
- This repository contains a set of rules samples that can be directly used with Trellix Endpoint Security, in the Exploit Prevention polic…☆31Mar 26, 2026Updated 2 weeks ago
- This is the Linux kernel module event collector for the Carbon Black Cloud.☆19Aug 4, 2023Updated 2 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Linux Kernel module for Carbon Black EDR☆12Dec 11, 2020Updated 5 years ago
- A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.☆1,953Apr 7, 2024Updated 2 years ago
- Set of scripts to index PCAP files and retrieve packets☆14Sep 10, 2015Updated 10 years ago
- An eBPF kernel Observable Agent To Spy Performance Issue On OS.☆13Oct 31, 2025Updated 5 months ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆151Feb 16, 2022Updated 4 years ago
- Exploring RPC interfaces on Windows☆348Jan 30, 2024Updated 2 years ago
- ☆92Dec 5, 2025Updated 4 months ago
- Indicators of compromise☆17Jan 29, 2026Updated 2 months ago
- sopacker是一个用于打包可执行文件和动态库的脚本工程. 生成的新可执行文件可以在大部分Linux上运行. sopacker is a script for packaging an executable file and all its dependent dynam…☆16Nov 14, 2025Updated 4 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- ☆14Dec 26, 2022Updated 3 years ago
- TrustedSec Sysinternals Sysmon Community Guide☆1,391Feb 10, 2026Updated last month
- Elastic Security detection content for Endpoint☆1,394Updated this week
- This project is no longer maintained. There's a successor at https://github.com/zeek/zeek-agent-v2☆124Nov 19, 2020Updated 5 years ago
- ☆79Sep 29, 2025Updated 6 months ago
- Linux Kernel Runtime Integrity with eBPF☆184Nov 23, 2023Updated 2 years ago
- The Multiplatform Linux Sandbox☆16Dec 19, 2023Updated 2 years ago