Skip to content
View blackye's full-sized avatar
💭
I may be slow to respond.
💭
I may be slow to respond.
  • Tencent

Block or report blackye

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
24 stars written in C
Clear filter

BCC - Tools for BPF-based Linux IO analysis, networking, monitoring, and more

C 22,322 4,043 Updated Mar 31, 2026

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

C 20,381 1,170 Updated Apr 1, 2026

Small and highly portable detection tests based on MITRE's ATT&CK.

C 11,765 3,087 Updated Mar 30, 2026

The pattern matching swiss knife

C 9,524 1,555 Updated Feb 10, 2026

Official git repo for iodine dns tunnel

C 7,784 585 Updated Sep 4, 2025

Defeating Windows User Account Control

C 7,467 1,418 Updated Feb 17, 2026

dperf: High-Performance Network Load Testing Tool Based on DPDK

C 5,561 553 Updated Nov 10, 2025

upstream mirror

C 5,079 1,040 Updated Apr 3, 2026

NAXSI is an open-source, high performance, low rules maintenance WAF for NGINX

C 4,825 602 Updated Nov 8, 2023

Open Source Deep Packet Inspection Software Toolkit

C 4,405 978 Updated Apr 2, 2026

nginx-1.9.2源码通读分析注释,带详尽函数中文分析注释以及相关函数流程调用注释,最全面的nginx源码阅读分析中文注释,更新完毕

C 4,207 1,246 Updated Jul 26, 2021

A Redis HTTP interface with JSON output

C 2,944 311 Updated Feb 24, 2026

The first open-source DDoS protection system

C 1,598 247 Updated Nov 5, 2025

Process-aware, eBPF-based tcpdump

C 1,211 65 Updated Apr 1, 2026

Hide a process under Linux using the ld preloader (https://sysdig.com/blog/hiding-linux-processes-for-fun-and-profit/)

C 1,126 324 Updated Aug 2, 2019

Linux LD_PRELOAD rootkit (x86 and x86_64 architectures)

C 976 195 Updated Dec 11, 2020

Fast Python Bloom Filter using Mmap

C 745 135 Updated Nov 4, 2019

QNSM is network security monitoring framework based on DPDK.

C 527 189 Updated Sep 27, 2021

Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)

C 305 55 Updated Nov 30, 2024

a PoC for Linux to get around agents that log commands being executed, without root privilege. Linux低权限模糊化执行的程序名和参数,避开基于execve系统调用监控的命令日志

C 245 39 Updated May 8, 2019

linux rootkit

C 162 32 Updated Feb 12, 2018

dpdk infrastructure for software acceleration. Currently working on RX and ACL pre-filter

C 90 43 Updated Mar 10, 2021

Junk code - needless to explain

C 78 27 Updated Sep 10, 2021

suspicious flow checker for http and dns

C 1 1 Updated Oct 12, 2017