njcx / RuleCat
GO开发而成,用于NIDS HIDS 分析的规则引擎,使用WorkerPool 高性能检测,支持多字段 "和" "或" 检测, 支持频率检测
☆77Updated 2 months ago
Alternatives and similar repositories for RuleCat:
Users that are interested in RuleCat are comparing it to the libraries listed below
- 使用 cgroups + etcd + kafka + netlink-connector 开发而成的hids的架构,agent 部分 使用go 开发而成, 会把采集的数据写入到kafka里面,由后端的规则引擎(go开发而成)消费,配置部分以及agent存活使用etcd。☆19Updated 3 years ago
- Go Agent is a go application probe of DongTai IAST, which collects method invocation data during runtime of Go application by dynamic hoo…☆42Updated 3 months ago
- 天御攻防实验室 - 威胁猎杀实战系列☆102Updated 5 years ago
- Elkeid HUB is a rule/event processing engine maintained by the Elkeid Team that supports streaming/offline (not yet supported by the comm…