wowsignal-io / pedroLinks
Pipeline EDR Observer - A lightweight, open source EDR for Linux
☆15Updated last week
Alternatives and similar repositories for pedro
Users that are interested in pedro are comparing it to the libraries listed below
Sorting:
- A cross platform parser for Apple UnifiedLogs!☆279Updated last month
- Phorion Kronos is a macOS security tool designed to enhance Apple's Transparency Consent and Control (TCC) security and privacy mechanism…☆77Updated last year
- Mapping XProtect's obfuscated malware family names to common industry names.☆85Updated last year
- A binary and file access authorization system for macOS.☆386Updated this week
- Aftermath is a free macOS IR framework☆540Updated last week
- machofile is a module to parse Mach-O binary files☆89Updated last month
- A command line tool for pstree-like output on macOS with additional pid capturing capabilities☆263Updated last year
- ☆28Updated last year
- A tool to run and validate telemetry for Atomic Red Team tests☆14Updated last year
- A serverless sync server for Santa, built on AWS☆101Updated 3 months ago
- A parser for Unified logging tracev3 files☆95Updated 2 months ago
- Forensic toolkit for iOS sysdiagnose feature☆224Updated this week
- DFIQ is a collection of investigative questions and the approaches for answering them☆292Updated 8 months ago
- A ruleset to find potentially malicious code in macOS malware samples☆40Updated 2 years ago
- Generate Volatility3 profiles from BTF.☆28Updated 9 months ago
- Rust Bindings for Endpoint Security☆31Updated last week
- ELEGANTBOUNCER is a detection tool for file-based mobile exploits.☆152Updated 2 weeks ago
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆97Updated 3 years ago
- ☆149Updated 2 weeks ago
- Persistent Certificate Store (PCeS) is a certificate lifecycle management system written in Go.☆19Updated 3 weeks ago
- Detect common classes of XPC exploits☆14Updated 9 months ago
- A Secure Enclave Token Driver Smartcard Extension☆60Updated 2 years ago
- An osquery extension for endpoint engineers☆112Updated 3 months ago
- ☆51Updated last year
- Slides and resources for talks I've given☆48Updated 2 years ago
- macOS Endpoint Security Message Analysis Tool☆47Updated 3 years ago
- Local CLI tool for browser extension risk analysis☆24Updated 5 months ago
- Aftermath is a free macOS incident response framework☆32Updated last week
- #supply #chain #attack #detection☆555Updated this week
- macOS XProtect definition files☆40Updated 3 years ago