snapattack / bpfdoor-scannerLinks
BPFDoor Scanner - Check for Compromised Hosts
☆42Updated 3 years ago
Alternatives and similar repositories for bpfdoor-scanner
Users that are interested in bpfdoor-scanner are comparing it to the libraries listed below
Sorting:
- 오펜시브 시큐리티 TTP, 정보, 그리고 대응 방안을 분석하고 공유하는 프로젝트입니다. 정보보안 업계 종사자들과 학생들에게 도움이 되었으면 좋겠습니다.☆70Updated 7 months ago
- A library and cli tool to extract HWP files.☆28Updated 9 months ago
- Easy to extend initial access scenario to help with EDR testing on Linux and Mac☆26Updated 3 years ago
- Python wrappers for mal_unpack☆37Updated 2 years ago
- A local LKM rootkit loader/dropper that lists available security mechanisms☆52Updated 4 years ago
- ☆28Updated 4 years ago
- ☆46Updated last week
- A scanner that files with compromised or untrusted code signing certificates written in python.☆64Updated 2 years ago
- ☆11Updated 4 years ago
- PoC MSI payload based on ASEC/AhnLab's blog post☆23Updated 3 years ago
- Timestomper and Timestamp checker with nanosecond accuracy for NTFS volumes☆53Updated 4 years ago
- Cumulus is web application weakness monitoring, works with just 3 code lines☆40Updated 2 years ago
- YARI is an interactive debugger for YARA Language.☆89Updated 2 months ago
- Royal Road RTF Weaponizer object decoder☆24Updated last year
- Tools that trigger False Positive AV alerts☆53Updated 10 months ago
- ☆25Updated 3 years ago
- Surface Analysis System on Cloud☆19Updated last year
- Linux startup analyzer☆65Updated 5 months ago
- "ImpELF: A Python-based ELF hashing utility that generates unique fingerprints for ELF binaries using their imported functions and librar…☆15Updated last year
- Repo for The Crown: Exploratory Analysis of Nim Malware DEF CON 615 talk☆46Updated 3 years ago
- Modular malware analysis artifact collection and correlation framework☆53Updated last year
- Renamed to Free EDR to avoid confusion with Comodo's project☆26Updated 2 years ago
- ☆66Updated 4 years ago
- Windows Event Log Knowledge Base☆28Updated this week
- Merge all Yara rules from official Yara github repository in one .yar file☆30Updated 7 years ago
- Script for automating Linux memory capture and analysis☆13Updated 5 years ago
- ☆12Updated 3 years ago
- RustHunter is a modular incident response framework based on Rust and Ansible to build and compare environmental baselines.☆18Updated last week
- The repository accompanying the Buer Emulation workshop☆23Updated 4 years ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆39Updated 4 years ago