GoRootCheck: Standalone rootcheck by OSSEC wrtitten in Go

https://github.com/pyperanger/gorootcheck

A rootkit-checking tool, written in Go. It does a few things. two of which include using OSSSEC rootkit lists as input to search for the rootkits listed in these files. (AFAICT, the OSSEC rootkit files don’t have any firmware bootkit entries.)

https://www.ossec.net/docs/manual/rootcheck/manual-rootcheck.html
https://github.com/ossec/ossec-hids/commits/master/src/rootcheck/db/rootkit_files.txt
https://github.com/ossec/ossec-hids/commits/master/src/rootcheck/db/rootkit_trojans.txt

Leave a Reply

Please log in using one of these methods to post your comment:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s