trapmine / trapmine-linux-sensorLinks
An ebpf based agent for monitoring security relevant events on Linux systems.
☆34Updated 2 years ago
Alternatives and similar repositories for trapmine-linux-sensor
Users that are interested in trapmine-linux-sensor are comparing it to the libraries listed below
Sorting:
- Red Canary's eBPF Sensor☆113Updated 7 months ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- ATLAS - Malware Analysis Description☆21Updated 2 years ago
- Malware Checker Tool generates an HTML report by comparing Hashes, Ip Addresses and URL Addresses through the VirusTotal database.☆36Updated 3 years ago
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆167Updated last year
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆43Updated 8 months ago
- Sigma Engine implementation in TypeScript☆28Updated 2 years ago
- ☆90Updated 2 months ago
- ☆22Updated 2 years ago
- Linux based vulnerabilities (CVE) exploit detection through runtime security using Falco/Osquery/Yara/Sigma☆21Updated 2 years ago
- ☆14Updated 5 years ago
- ☆10Updated 5 months ago
- Golang Parser for Microsoft Event Logs☆106Updated 3 months ago
- YARI is an interactive debugger for YARA Language.☆90Updated 4 months ago
- Alternative YARA scanning engine☆73Updated 3 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- Linpmem is a linux memory acquisition tool☆95Updated 7 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆75Updated 4 years ago
- A collection of curated YARA rules used as part of the Filescan.io service☆22Updated this week
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆29Updated 4 months ago
- gyp: A pure Go YARA parser☆106Updated last year
- YaraScanner is a file pattern-matching tool based on YARA rules.☆60Updated 2 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated last year
- ☆34Updated 4 years ago
- QuickSand document and PDF malware analysis tool written in Python☆136Updated 3 months ago
- ☆33Updated 3 months ago
- bootloaders.io is a curated list of known malicious bootloaders for various operating systems. The project aims to assist security profes…☆68Updated 2 years ago
- ELFEN: Automated Linux Malware Analysis Sandbox☆136Updated 5 months ago
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆168Updated last year
- Lightweight Python-Based Malware Analysis Pipeline☆37Updated last month