recontech404 / KairosLinks
Open Source eBPF Malware Analysis Framework
☆52Updated 11 months ago
Alternatives and similar repositories for Kairos
Users that are interested in Kairos are comparing it to the libraries listed below
Sorting:
- Userland exec PoC to be used as attack vector technique☆90Updated 3 weeks ago
- eBPF Memory Dump Tool☆86Updated last month
- Golem automates C/C++ vulnerability discovery with SemGrep+LLVM+LLM☆92Updated 3 months ago
- ☆32Updated 7 months ago
- A simple Meterpreter stager written in Rust.☆40Updated 2 weeks ago
- OffensiveCon 2024 Repo, contains PoCs and materials for talk "UEFI and the Task of the Translator"☆42Updated last year
- GoResolver is a Go analysis tool using both Go symbol extraction and Control Flow Graph (CFG) similarity to identify and resolve the func…☆70Updated last month
- Aplos an extremely simple fuzzer for Windows binaries.☆68Updated 7 months ago
- Rust Linux Kernel Module designed for LKM rootkit detection☆52Updated 7 months ago
- GERMY is a Linux Kernel n-day in the N_GSM line discipline☆49Updated last year
- Reverse engineering assistant that extracts strings and related pseudocode from a binary file.☆68Updated last week
- Proof-of-concept modular implant platform leveraging v8☆56Updated 7 months ago
- Monarch - The Adversary Emulation Toolkit☆63Updated 9 months ago
- ☆20Updated 2 years ago
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆51Updated 2 months ago
- Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75☆35Updated 3 weeks ago
- ☆48Updated 2 months ago
- Golang bindings for PE-sieve☆42Updated last year
- BINARLY Research Tools and PoCs☆38Updated last year
- C and Python training from our Vulnerability Researcher Development Program (VRDP)☆79Updated 2 months ago
- Linux BPF plugins for Volatility3☆23Updated last year
- ☆38Updated 10 months ago
- ☆22Updated last month
- Hackers to Hackers Conference (H2HC) presentation in São Paulo☆37Updated 9 months ago
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆127Updated 4 months ago
- ☆89Updated 8 months ago
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆23Updated 9 months ago
- A tool to interact with Windows drivers to perform a raw disk read and parse out target files without calling standard Windows file APIs☆89Updated last month
- Vibe Malware Triage - MCP server for static PE analysis.☆70Updated 4 months ago
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆83Updated last year