Skip to content
#

endpoint-detection

Here are 20 public repositories matching this topic...

Adaptive BadUSB/HID attack emulation + behavioral endpoint detection with the Flipper Zero. Defensive-security research: build a labeled human-vs-injected keystroke dataset, train an EDR-style detector, and red-team it with an adaptive humanized attacker.

  • Updated Aug 19, 2026
  • Python

Experimental closed-loop EDR evaluation framework, automated artifact mutation, sandboxed execution, telemetry collection, and explainable triage. Understands why detections trigger. M.Sc. Cybersecurity thesis (EPFL, 2026).

  • Updated Mar 18, 2026
  • Rust

Argus. A minimal, educational EDR / endpoint monitor written in Nim. It collects process, file, and network telemetry, normalizes it, and runs a rule-based detection engine with MITRE ATT&CK mapping. Read-only and defensive by design.

  • Updated Aug 1, 2026
  • Nim

Improve this page

Add a description, image, and links to the endpoint-detection topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the endpoint-detection topic, visit your repo's landing page and select "manage topics."

Learn more