sourque / louis
Linux EDR written in Golang and based on eBPF.
☆234Updated 2 years ago
Alternatives and similar repositories for louis:
Users that are interested in louis are comparing it to the libraries listed below
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆287Updated 2 months ago
- Inject ELF into remote process☆130Updated last year
- ☆298Updated last year
- bdvl☆112Updated 2 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆127Updated last year
- ☆47Updated 2 years ago
- Pull some Malware samples here for other security researchers/malware analyst's to analyze and play with.☆174Updated 8 months ago
- The demo of hidden process and ko module☆15Updated 2 years ago
- A penetration toolkit for container environment☆77Updated last month
- CVE-2021-1732 Microsoft Windows 10 本地提权漏 研究及Poc/Exploit开发☆81Updated 3 years ago
- Dectect syscall hooking using eBPF☆145Updated last year
- A reverse PTY shell in C☆103Updated 6 years ago
- k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.☆281Updated 3 years ago
- Domain Borrowing PoC☆211Updated 3 years ago
- 40行代码检测到大部分CobaltStrike的shellcode☆274Updated 3 years ago
- /root/.ssh/authorized_keys evil file watchdog with ebpf tracepoint hook.☆335Updated 2 years ago
- Tools for fuzzing RDP☆128Updated 3 years ago
- Hide process,port,self under Linux using the ld_preload☆161Updated 3 years ago
- Resources About Shellcode☆210Updated 4 years ago
- Decrypt encrypted Fortienet FortiOS firmware images☆106Updated last year
- 容器安全漏洞的分析与复现☆151Updated 10 months ago
- CVE exploits for Web, Windows, Linux and others are independently written by Zhuri Lab☆48Updated 4 years ago
- x64 printable shellcode encoder☆155Updated 4 years ago
- ☆236Updated last month
- CVE-2022-23222: Linux Kernel eBPF Local Privilege Escalation☆562Updated 2 years ago
- Donut Injector ported to pure Go. For use with https://github.com/TheWover/donut☆323Updated 2 years ago
- tcppc: A simple honeypot to capture TCP/TLS/UDP payloads on ALL ports.☆35Updated 4 years ago
- Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions☆481Updated 3 years ago
- Proof of concept for LD_PRELOAD malware that uses extended attributes to protect files.☆117Updated 8 years ago
- ☆130Updated 2 years ago