TUI for viewing logs from journald, auditd, file system, Docker and Podman containers, Compose stacks and Kubernetes pods with support for log highlighting and several filtering modes.
-
Updated
Jul 1, 2026 - Go
TUI for viewing logs from journald, auditd, file system, Docker and Podman containers, Compose stacks and Kubernetes pods with support for log highlighting and several filtering modes.
Transform Linux Audit logs for SIEM usage
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
A Linux Auditd rule set mapped to MITRE's Attack Framework
Ansible role to apply a security baseline. Systemd edition.
Hands-on projects for beginners to learn and practice essential cybersecurity skills through security assessments.
go-libaudit is a library for communicating with the Linux Audit Framework.
ArchLinux setup which focuses on desktop security
Hardening the Linux operating system for Debian like distributions.
Install and configure user mode auditd tools
Proof-of-Concept to evade auditd by writing /proc/PID/mem
Demo for Elastic's Auditbeat and SIEM
🛡️ VPS-SECURE is the only script that turns a bare VPS into an operational fortress — honeypot, collaborative IPS, real-time dashboard, Telegram alerts — in 15 minutes and 1 command, with zero Linux expertise required. 🚀⚡
Proof-of-Concept to evade auditd by tampering via ptrace
Curated Linux LPE corpus — 28 modules from 2016 to 2026, with detection rules. One command, safest-first root: skeletonkey --auto --i-know
CopyFail (CVE-2026-31431): Linux kernel page-cache PrivEsc PoC + the only public detection tool. Novel PAM auth-bypass vector + Sigma/auditd/eBPF rules.
Add a description, image, and links to the auditd topic page so that developers can more easily learn about it.
To associate your repository with the auditd topic, visit your repo's landing page and select "manage topics."