Skip to content

Comments

Add Rupurt rootkit hunter and NullSec LogReaper to Tools section#55

Open
bad-antics wants to merge 1 commit into0x4D31:masterfrom
bad-antics:add-nullsec-security-tools
Open

Add Rupurt rootkit hunter and NullSec LogReaper to Tools section#55
bad-antics wants to merge 1 commit into0x4D31:masterfrom
bad-antics:add-nullsec-security-tools

Conversation

@bad-antics
Copy link

Additions

1. Rupurt — Linux Rootkit Hunter

Rupurt — An advanced Linux rootkit detection tool featuring:

  • 250+ detection signatures for known rootkits, kernel backdoors, and LKM-based threats
  • eBPF-based runtime monitoring for real-time kernel event interception
  • Kernel module integrity analysis and hidden process detection
  • Filesystem integrity checking with hash verification
  • Designed for incident response and proactive threat hunting on Linux hosts

2. NullSec LogReaper — Log Analysis & Forensics Tool

NullSec LogReaper — A high-speed log analysis tool for threat hunting:

  • Parses syslog, auth logs, journald, and custom log formats
  • Pattern matching engine with built-in IOC detection rules
  • Anomaly detection for brute force attempts, privilege escalation, lateral movement
  • Timeline correlation across multiple log sources
  • Designed for DFIR workflows and SOC operations

Both tools are open source, actively maintained, and complement the existing threat detection tooling in this list.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant