smagnani96 / eBPF_TrafficAnalyzer
eBPF C programs injectable in a network card to extract packets' features for detecting different network attacks.
☆12Updated 3 years ago
Alternatives and similar repositories for eBPF_TrafficAnalyzer
Users that are interested in eBPF_TrafficAnalyzer are comparing it to the libraries listed below
Sorting:
- 基于winpcap的数据包解析工具;比tshark更快。☆16Updated 4 years ago
- 虚拟机带外内存监控☆14Updated 7 years ago
- This project fully automates the process of analyzing and exploiting IoT malware to find live CnC servers.☆41Updated 9 months ago
- Zeek scripts that provide an alternative log file logging TLS/SSL traffic☆10Updated 4 years ago
- This repository contains the code for the paper "A flow-based IDS using Machine Learning in eBPF", Contact: Maximilian Bachl☆99Updated last year
- Dectect syscall hooking using eBPF☆153Updated 2 years ago
- ☆12Updated 2 years ago
- Exploit for uTorrent vulnerability CVE-2020-8437 by whtaguy☆11Updated 4 years ago
- ☆24Updated 7 years ago
- ssdeep cluster analysis for malware files☆30Updated 4 years ago
- The project will serve as a central repository for VMware Threat Analysis Unit (TAU) to share threat intelligence with the security commu…☆17Updated 2 years ago
- Analysis of syscall sequence pattern from exploit codes for advanced system call sequence filtering for enhanced container security☆16Updated last year
- Disable SSL certificate verification for all binaries that use libssl☆49Updated 2 years ago
- Using LibVMI to detect malware☆31Updated 3 years ago
- Pure python parser for Snort/Suricata rules.☆31Updated last year
- A tool to facilitate ROP Chain Development for XML Character Sanitization☆20Updated 6 years ago
- TLS 技术原理与 1.0协议旁路解密实现方法☆26Updated 6 years ago
- A collection of BPF examples☆39Updated 4 years ago
- A Python based Intrusion Detection and Prevention System. Uses Scapy to sniff packets at a specific interface, extract the remote IPs, sc…☆9Updated 7 years ago
- PROJECT DELTA: SDN SECURITY EVALUATION FRAMEWORK☆87Updated 2 years ago
- Snort IDS ported to OpenNetVM☆17Updated 5 years ago
- PPT of my talks.☆11Updated 2 weeks ago
- Example program using eBPF to log data being based in using shell pipes☆41Updated 4 years ago
- My conference presentations and Materials for them.☆32Updated 2 years ago
- The report of a supervised classifier to detect malware in TLS traffic☆21Updated 5 years ago
- Rootkit breaker - experimental Linux anti-rootkit tool based on kprobes☆12Updated 4 years ago
- ☆28Updated 3 years ago
- Experiment with Linux system calls (memfd_create, fexecve, fork...)☆22Updated 6 years ago
- Trace deep kernel events through eBPF and lsm hooks☆35Updated 4 years ago
- Exploits for YARA 3.7.1 & 3.8.1☆31Updated 6 years ago