ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.
-
Updated
Mar 20, 2024 - C#
ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.
🕵️♂️ ML project to identify malicious web payloads, aimed at boosting the effectiveness of WAFs and IDSs.
Wraith is a low-level Rust security sensor that answers a question most tools can't: "is this process being exploited right now?" By focusing entirely on anomalous runtime behavior rather than known signatures or payloads, Wraith detects live exploits and uncovers zero-day vulnerabilities completely in advance of a patch.
Browse, collect, record, and inspect Windows ETW providers and events through a single desktop interface.
RF-Based Drone Detection, Payload Analysis & Threat Classification System - Affordable open-source Counter-UAS research
Add a description, image, and links to the payload-detection topic page so that developers can more easily learn about it.
To associate your repository with the payload-detection topic, visit your repo's landing page and select "manage topics."