Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile
Kunai Project (@[email protected])

@kunai_project

News about github.com/kunai-project

ID: 1748343039628582913

linkhttps://why.kunai.rocks calendar_today19-01-2024 13:56:02

35 Tweet

68 Takipรงi

0 Takip Edilen

Peter Czanik (@pczanik) 's Twitter Profile Photo

Today is the third day of Pass the SALT Conference. I'm learning about Kunai Project (@[email protected]): cfp.pass-the-salt.org/pts2024/talk/Tโ€ฆ It's a #sysmon alternative for #Linux targeted at #infosec, however I plant to use it to debug syslog-ng :-)

Pass the SALT Conference (@passthesaltcon) 's Twitter Profile Photo

๐Ÿ‘๐Ÿ‘๐Ÿ‘ to Quentin, the Kunai Project (@[email protected]) leader, for this blazing fast implementation of the feature request asked during the #kunai talk at our 2024 edition! This is exactly the purpose of our conference: giving opportunity to FLOSS developers to interact with users and security

CIRCL - @circl@social.circl.lu (@circl_lu) 's Twitter Profile Photo

Learning from the Recent Windows/Falcon Sensor Outage - Causes and Potential Improvement Strategies in Linux with Open Source circl.lu/pub/learning-fโ€ฆ #infosec #crowdstrike #opensource #edr

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐ŸŽ‰ New Kunai release with small enhancements concerning detection/filtering rules and aarch64 compatibility. This is the latest release for v0.2 as I'll start working on v0.3 to bring new events and new features. Check it out: github.com/kunai-project/โ€ฆ

๐ŸŽ‰ New Kunai release with small enhancements concerning  detection/filtering rules and aarch64 compatibility. This is the latest  release for v0.2 as I'll start working on v0.3 to bring new events and  new features. Check it out: github.com/kunai-project/โ€ฆ
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐Ÿ”ง I initiated the work on next version. I am already planning to add one security event generated when a task tries to kill another. If you'd like other events, reply to this post with your ideas. #linux #threathunting #threatdetection

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐Ÿ“ท A public preview of new features landing soon in the Kunai Project: - Define actions triggered by detections - Scan files with YARA as an action ๐Ÿ’ฃ You can even detect #malware in #linux containers (see example) Follow progress: github.com/kunai-project/โ€ฆ

๐Ÿ“ท A public preview of new features landing soon in the Kunai Project:

  - Define actions triggered by detections
  - Scan files with YARA as an action

๐Ÿ’ฃ You can even detect #malware in #linux containers (see example)

Follow progress: github.com/kunai-project/โ€ฆ
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐Ÿ”” For those wondering how to gain visibility on their #Linux system for #ThreatDetection and #ThreatHunting: Check out the Kunai Project! It's completely free and supports IoC-based detection, Yara rules, custom detection rules, and more. New release: github.com/kunai-project/โ€ฆ

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

Enhancing Detection Engineering with Automated Malware Sandboxing with Kunai Project (@[email protected]) #detectionengineering #infosec #edr #sandbox #opensource #threathunting ๐Ÿ“˜ Blog post - why.kunai.rocks/blog/2024/10/0โ€ฆ ๐Ÿ”Ž Git repository - github.com/kunai-project/โ€ฆ ๐Ÿ”— Dataset - helga.circl.lu/NGSOTI/malware-

cr0@Defensive-Security.com / PurpleLabs / EDRmetry (@cr0nym) 's Twitter Profile Photo

Linux sandboxing infrastructure based on QEMU for virtualization and Kunai for sample monitoring - so cool! ๐Ÿ”ฅ๐Ÿ‘๐Ÿ‘โœŒ๏ธ

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐ŸŽ‰ We're thrilled to announce Kunai v0.3.0-beta.1! ๐Ÿ” New features: ๐Ÿ’ก Event monitoring for files written then closed ๐ŸŒ Corelight community-ID integration ๐Ÿ› ๏ธ New CLI options for logs & service installation Check it out: github.com/kunai-project/โ€ฆ #dfir #soc #threathunting

๐ŸŽ‰ We're thrilled to announce Kunai v0.3.0-beta.1!

๐Ÿ” New features:

๐Ÿ’ก Event monitoring for files written then closed
๐ŸŒ Corelight community-ID integration
๐Ÿ› ๏ธ New CLI options for logs & service installation

Check it out: github.com/kunai-project/โ€ฆ

#dfir #soc #threathunting
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐Ÿš€ New Stable Release! ๐Ÿš€ Now with log rotation, an overhauled CLI, new kill event, and hardened mode with LSM for enhanced security. YARA-X integration brings advanced threat detection, and Community-ID supports easy network data correlation. github.com/kunai-project/โ€ฆ

๐Ÿš€ New Stable Release! ๐Ÿš€ Now with log rotation, an overhauled CLI, new kill event, and hardened mode with LSM for enhanced security. YARA-X integration brings advanced threat detection, and Community-ID supports easy network data correlation.

github.com/kunai-project/โ€ฆ
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐Ÿš€ New Kunai Release! ๐ŸŽ‰ Fixes zombie process tracking ๐ŸงŸโ€โ™‚๏ธ, better configs, and new features: - Composite Rules for modular logic - File Create Event Tracking - ... Docs: why.kunai.rocks Details: github.com/kunai-project/โ€ฆ #Linux #OpenSource #SOCย #DFIR #ThreatHunting

๐Ÿš€ New Kunai Release! ๐ŸŽ‰

Fixes zombie process tracking ๐ŸงŸโ€โ™‚๏ธ, better configs, and new features:

 - Composite Rules for modular logic
 - File Create Event Tracking
 - ...

Docs: why.kunai.rocks
Details: github.com/kunai-project/โ€ฆ
#Linux #OpenSource #SOCย #DFIR #ThreatHunting
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐ŸŽ‰ The Kunai Project will join Hackathon.lu 2025 on April 8-9! Letโ€™s work together toward a common goal. ๐Ÿ“… Details: hackathon.lu ๐Ÿ”Ž Explore Kunai: github.com/kunai-project/โ€ฆ #OpenSource #ThreatHunting #Linux

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

Kunai v0.5.0 is here! ๐Ÿ”ฅ New start/error/event_loss events + file system event limiting & bug fixes. Enhanced observability. Check it out: github.com/kunai-project/โ€ฆ #dfir #soc #ebpf #opensource #Linux

Kunai  v0.5.0 is here! ๐Ÿ”ฅ New start/error/event_loss events + file system  event limiting & bug fixes. Enhanced observability. Check it out:  github.com/kunai-project/โ€ฆ #dfir #soc #ebpf #opensource #Linux
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

๐Ÿš€ Kunai pushes further MISP (@[email protected]) integration! New tool kunai-to-misp (github.com/kunai-project/โ€ฆ) lets you push Kunai logs to MISP (misp-project.org) for better threat intel sharing. #ThreatIntel #Linux #SOC #OpenSource #ThreatHunting

๐Ÿš€ Kunai pushes further <a href="/MISPProject/">MISP (@misp@misp-community.org)</a>  integration!

New tool kunai-to-misp (github.com/kunai-project/โ€ฆ) lets you push Kunai logs to MISP (misp-project.org) for better threat intel sharing.

#ThreatIntel #Linux #SOC #OpenSource #ThreatHunting