Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile
Kunai Project (@[email protected])

@kunai_project

News about github.com/kunai-project

ID: 1748343039628582913

linkhttps://why.kunai.rocks calendar_today19-01-2024 13:56:02

35 Tweet

68 Followers

0 Following

Peter Czanik (@pczanik) 's Twitter Profile Photo

Today is the third day of Pass the SALT Conference. I'm learning about Kunai Project (@[email protected]): cfp.pass-the-salt.org/pts2024/talk/T… It's a #sysmon alternative for #Linux targeted at #infosec, however I plant to use it to debug syslog-ng :-)

Pass the SALT Conference (@passthesaltcon) 's Twitter Profile Photo

πŸ‘πŸ‘πŸ‘ to Quentin, the Kunai Project (@[email protected]) leader, for this blazing fast implementation of the feature request asked during the #kunai talk at our 2024 edition! This is exactly the purpose of our conference: giving opportunity to FLOSS developers to interact with users and security

CIRCL - @circl@social.circl.lu (@circl_lu) 's Twitter Profile Photo

Learning from the Recent Windows/Falcon Sensor Outage - Causes and Potential Improvement Strategies in Linux with Open Source circl.lu/pub/learning-f… #infosec #crowdstrike #opensource #edr

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸŽ‰ New Kunai release with small enhancements concerning detection/filtering rules and aarch64 compatibility. This is the latest release for v0.2 as I'll start working on v0.3 to bring new events and new features. Check it out: github.com/kunai-project/…

πŸŽ‰ New Kunai release with small enhancements concerning  detection/filtering rules and aarch64 compatibility. This is the latest  release for v0.2 as I'll start working on v0.3 to bring new events and  new features. Check it out: github.com/kunai-project/…
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸ”§ I initiated the work on next version. I am already planning to add one security event generated when a task tries to kill another. If you'd like other events, reply to this post with your ideas. #linux #threathunting #threatdetection

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸ“· A public preview of new features landing soon in the Kunai Project: - Define actions triggered by detections - Scan files with YARA as an action πŸ’£ You can even detect #malware in #linux containers (see example) Follow progress: github.com/kunai-project/…

πŸ“· A public preview of new features landing soon in the Kunai Project:

  - Define actions triggered by detections
  - Scan files with YARA as an action

πŸ’£ You can even detect #malware in #linux containers (see example)

Follow progress: github.com/kunai-project/…
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸ”” For those wondering how to gain visibility on their #Linux system for #ThreatDetection and #ThreatHunting: Check out the Kunai Project! It's completely free and supports IoC-based detection, Yara rules, custom detection rules, and more. New release: github.com/kunai-project/…

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

Enhancing Detection Engineering with Automated Malware Sandboxing with Kunai Project (@[email protected]) #detectionengineering #infosec #edr #sandbox #opensource #threathunting πŸ“˜ Blog post - why.kunai.rocks/blog/2024/10/0… πŸ”Ž Git repository - github.com/kunai-project/… πŸ”— Dataset - helga.circl.lu/NGSOTI/malware-

cr0@Defensive-Security.com / PurpleLabs / EDRmetry (@cr0nym) 's Twitter Profile Photo

Linux sandboxing infrastructure based on QEMU for virtualization and Kunai for sample monitoring - so cool! πŸ”₯πŸ‘πŸ‘βœŒοΈ

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸŽ‰ We're thrilled to announce Kunai v0.3.0-beta.1! πŸ” New features: πŸ’‘ Event monitoring for files written then closed 🌐 Corelight community-ID integration πŸ› οΈ New CLI options for logs & service installation Check it out: github.com/kunai-project/… #dfir #soc #threathunting

πŸŽ‰ We're thrilled to announce Kunai v0.3.0-beta.1!

πŸ” New features:

πŸ’‘ Event monitoring for files written then closed
🌐 Corelight community-ID integration
πŸ› οΈ New CLI options for logs & service installation

Check it out: github.com/kunai-project/…

#dfir #soc #threathunting
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸš€ New Stable Release! πŸš€ Now with log rotation, an overhauled CLI, new kill event, and hardened mode with LSM for enhanced security. YARA-X integration brings advanced threat detection, and Community-ID supports easy network data correlation. github.com/kunai-project/…

πŸš€ New Stable Release! πŸš€ Now with log rotation, an overhauled CLI, new kill event, and hardened mode with LSM for enhanced security. YARA-X integration brings advanced threat detection, and Community-ID supports easy network data correlation.

github.com/kunai-project/…
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸš€ New Kunai Release! πŸŽ‰ Fixes zombie process tracking πŸ§Ÿβ€β™‚οΈ, better configs, and new features: - Composite Rules for modular logic - File Create Event Tracking - ... Docs: why.kunai.rocks Details: github.com/kunai-project/… #Linux #OpenSource #SOCΒ #DFIR #ThreatHunting

πŸš€ New Kunai Release! πŸŽ‰

Fixes zombie process tracking πŸ§Ÿβ€β™‚οΈ, better configs, and new features:

 - Composite Rules for modular logic
 - File Create Event Tracking
 - ...

Docs: why.kunai.rocks
Details: github.com/kunai-project/…
#Linux #OpenSource #SOCΒ #DFIR #ThreatHunting
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸŽ‰ The Kunai Project will join Hackathon.lu 2025 on April 8-9! Let’s work together toward a common goal. πŸ“… Details: hackathon.lu πŸ”Ž Explore Kunai: github.com/kunai-project/… #OpenSource #ThreatHunting #Linux

Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

Kunai v0.5.0 is here! πŸ”₯ New start/error/event_loss events + file system event limiting & bug fixes. Enhanced observability. Check it out: github.com/kunai-project/… #dfir #soc #ebpf #opensource #Linux

Kunai  v0.5.0 is here! πŸ”₯ New start/error/event_loss events + file system  event limiting & bug fixes. Enhanced observability. Check it out:  github.com/kunai-project/… #dfir #soc #ebpf #opensource #Linux
Kunai Project (@kunai_project@infosec.exchange) (@kunai_project) 's Twitter Profile Photo

πŸš€ Kunai pushes further MISP (@[email protected]) integration! New tool kunai-to-misp (github.com/kunai-project/…) lets you push Kunai logs to MISP (misp-project.org) for better threat intel sharing. #ThreatIntel #Linux #SOC #OpenSource #ThreatHunting

πŸš€ Kunai pushes further <a href="/MISPProject/">MISP (@misp@misp-community.org)</a>  integration!

New tool kunai-to-misp (github.com/kunai-project/…) lets you push Kunai logs to MISP (misp-project.org) for better threat intel sharing.

#ThreatIntel #Linux #SOC #OpenSource #ThreatHunting