home.social

#drakvuf — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #drakvuf, aggregated by home.social.

fetched live
  1. Как реализовать поведенческий анализ в Linux на уровне гипервизора

    Привет, Хабр! Меня зовут Алексей Колесников, я работаю в отделе обнаружения вредоносного ПО экспертного центра безопасности Positive Technologies (PT Expert Security Center, PT ESC). Недавно я выступил на международной конференции AVAR 2023, которая проходила в Дубае. Рассказывал про новые плагины, разработанные PT Expert Security Center для опенсорсной системы динамического анализа вредоносного программного обеспечения DRAKVUF, и показывал, как с их помощью в песочнице PT Sandbox детектировать актуальные угрозы для Linux. Под катом мини-обзор популярных инструментов для мониторинга вредоносов в Linux, о работе наших плагинов в DRAKVUF и анализ ВПО с их использованием.

    habr.com/ru/companies/pt/artic

    #drakvuf #linux_kernel #cybersecurity #ядро_ос #кибербезопасность #плагины #эксплуатация_уязвимостей #песочница #procmon #linux

  2. I'm happy to announce the latest release of the #DRAKVUF Black-box Binary Analysis System:
    github.com/tklengyel/drakvuf/r! 🥳

    Just over the last year the project has seen 7 new plugins contributed ranging from monitoring EBPF on Linux to detecting heap spraying attacks using the graphics stack on Windows. It is truly awesome to see how versatile the DRAKVUF platform has proven to be and to see the community innovate.

    The project has been under active development for 8 years and this is the first release I finally felt it is ready to be released under the 1.0 label! It has a healthy open-source contributor base, extensive CI in place and all the hallmarks of a stable project ready for the next round of innovations!

    Thank you for all who contributed! Cheers! 👏

    Project website: drakvuf.com