Blog
Sandfly 1.1.4 Updates
Sandfly 1.1.4 is available. Includes 10 new sandflies to expand Linux stealth rootkit detection, process anti-forensics, log file tampering, suspicious user activity, and process masquerading attacks…
Christchurch Hacker Con Linux Digital Forensics Video
The video of Craig’s talk at the Christchurch Hacker Con has been posted to YouTube. This video covers the slides posted here on the blog which includes using basic Linux command line tools for…
Hello, World — Sandfly 1.1 is now available
After much time coding and testing, we are pleased to announce that Sandfly 1.1 is now released. Sandfly is an agentless security investigator and compromise detection system for Linux. With Sandfly…
Sandfly 2.3.3 – More Linux Sniffer and Immutable File Detection
Sandfly 2.3.3 has been released. We’ve put in more methods to help spot packet sniffers and suspicious immutable files common with malware. Plus, this version has a bug fix for a problem where hosts…