Small scripts to help with Linux forensics and incident response.
-
Updated
Sep 29, 2025 - Shell
Small scripts to help with Linux forensics and incident response.
Scripts to decloak Linux Loadable Kernel Module (LKM) stealth rootkits.
Linux-Defender π‘οΈ A robust Linux hardening script for securing your system in one shot βοΈπ β Checks for rootkits, malware, and suspicious activity π₯ Configures firewall, antivirus, and audit tools π― Supports Arch, Debian, Kali, and Parrot OS π΅οΈββοΈ Includes kali-anonsurf support for anonymous browsing on Kali
π Detect hidden kernel modules and rootkits using the sandfly-kernel-module-decloak script for enhanced Linux security and threat analysis.
Add a description, image, and links to the rootkit-detection topic page so that developers can more easily learn about it.
To associate your repository with the rootkit-detection topic, visit your repo's landing page and select "manage topics."