sysflow-telemetry / sysflowLinks
SysFlow documentation and issues tracker
☆46Updated last year
Alternatives and similar repositories for sysflow
Users that are interested in sysflow are comparing it to the libraries listed below
Sorting:
- Red Canary's eBPF Sensor☆111Updated 5 months ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- A repository to store Rad Fingerprinting data.☆24Updated last year
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆44Updated 5 years ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆110Updated 5 months ago
- Falco rule repository☆142Updated 2 weeks ago
- Linux Kernel Runtime Integrity with eBPF☆183Updated last year
- Kit for building Falco drivers: kernel modules or eBPF probes☆67Updated 2 weeks ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆81Updated 3 weeks ago
- Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)☆91Updated 6 months ago
- Open source endpoint agent providing host information to Zeek. [v2]☆87Updated 2 weeks ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆87Updated last year
- Suricata Verification Tests - Testing Suricata Output☆115Updated last week
- A repository for OSSEC rules and decoders☆53Updated 2 years ago
- ☆187Updated last week
- K8s API Honeypot with Active Defense Capabilities☆42Updated last year
- Cisco Orbital - Osquery queries by Talos☆135Updated last year
- Osquery Resources☆63Updated 6 years ago
- Elastic's eBPF☆70Updated last month
- Mappings Explorer enables cyber defenders to understand how security controls and capabilities map onto the adversary behaviors catalogue…☆83Updated this week
- simple YARA-based IOC scanner☆170Updated last month
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆73Updated 2 years ago
- Tools for conducting analysis of CVE data in Elasticsearch☆73Updated 3 months ago
- egrets monitors egress☆46Updated 5 years ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆150Updated 3 years ago
- Zeek IDS Dockerfile☆101Updated 2 years ago
- A dataset of software supply chain compromises. Please help us maintain it!☆130Updated 3 years ago
- Kubernetes offensive framework built in eBPF☆39Updated 2 years ago
- Understand OVAL results in a blink of an eye☆35Updated 3 years ago
- Falco plugins registry☆104Updated last week