☠️ rupurt — Advanced Linux rootkit hunter | 250+ signatures, eBPF kernel analysis, memory forensics, APT detection | NullSec
-
Updated
Apr 16, 2026 - C
☠️ rupurt — Advanced Linux rootkit hunter | 250+ signatures, eBPF kernel analysis, memory forensics, APT detection | NullSec
Lightweight Endpoint Detection & Response (EDR) Framework
A lightweight **Linux endpoint** detection agent written in **Go**. It runs as a CLI or **systemd** service, scans the host on an interval (and optionally watches `authorized_keys` via **fsnotify**), and emits **one JSON object per line** on stdout for SIEM pipelines.
The WPF-based graphical user interface for interacting with MAGIC - Detecting Advanced Persistent Threats via Masked Graph Representation Learning
Codes and data for USENIX Security 24 paper "MAGIC: Detecting Advanced Persistent Threats via Masked Graph Representation Learning"
AI-powered intrusion detection and APT attack prediction system using FastAPI, XGBoost and explainable AI.
Windows 기반 APT 공격 실시간 탐지 및 대응 자동화 시스템
Add a description, image, and links to the apt-detection topic page so that developers can more easily learn about it.
To associate your repository with the apt-detection topic, visit your repo's landing page and select "manage topics."