maxvarm

maxvarm

Geek Repo

Github PK Tool:Github PK Tool

maxvarm's repositories

linux-siem-audit-configs

Auditd, OSquery, and Falco low-volume process and filesystem auditing configs built for SIEM ingestion

License:MITStargazers:2Issues:1Issues:0

awesome-threat-intelligence

A curated list of Awesome Threat Intelligence resources

License:Apache-2.0Stargazers:1Issues:0Issues:0

ebpf-docker-lsm

Monitor and block specified processes and network connections with this docker-aware KRSI (BPF+LSM) security tool

Language:CLicense:GPL-3.0Stargazers:1Issues:1Issues:0
Language:PythonStargazers:0Issues:0Issues:0

memfd-process-hide

Hide process execution from auditd or dynamically load remote binaries using memfd+fexecve syscalls

Language:CLicense:GPL-3.0Stargazers:0Issues:1Issues:0
Language:PowerShellStargazers:0Issues:1Issues:0