Hacker News new | ask | show | jobs
by VitorMob 738 days ago
CrowArmor is a driver for Linux aimed at system security

Features

    Communicates with MalDec EDR
    Modifies the Syscall Table and hooks it
    Monitors if the Syscall Table has been modified
    Restores the Syscall if it has been modified by an unknown driver
    Monitors the CPU Control Registers and restores them if they are modified