Daniel
|
bed5c72a6b
|
Finalize profile merging, add profile metadata state handling, re-attribute connections after profile deletion
|
2023-10-25 13:54:06 +02:00 |
|
Daniel
|
1376e46d21
|
Improve IP/Port parsing
|
2023-09-06 11:08:02 +02:00 |
|
Daniel
|
e5baae9bd0
|
Implement review suggestions
|
2023-08-23 14:50:04 +02:00 |
|
Daniel
|
f3e7abf908
|
Use DNS request connections to attribute DNS requests
|
2023-08-18 16:49:45 +02:00 |
|
Daniel
|
d0f4392b9d
|
Fix netquery connection ID generation
|
2023-08-04 21:49:57 +02:00 |
|
Daniel
|
4fcfb424c9
|
Fix and improve packet handling procedures
|
2023-07-28 23:26:10 +02:00 |
|
Daniel
|
a33526a976
|
Fix handling of connections without process
|
2023-07-28 16:50:35 +02:00 |
|
Daniel
|
e18d7ade3d
|
Add missing method comment
|
2023-07-22 20:42:26 +02:00 |
|
Patrick Pacher
|
dbffa8827b
|
Update netquery to support history module
|
2023-07-20 16:24:13 +02:00 |
|
Daniel
|
0670956bbd
|
Fix parsing tagged windows service names
|
2023-07-20 14:05:16 +02:00 |
|
Daniel
|
5fe78dbad5
|
Match connections without PID only using UndefinedProcessID
|
2023-07-20 14:04:16 +02:00 |
|
Vladimir Stoilov
|
83479acc95
|
Add example for getting bandwidth stats
|
2023-06-30 16:56:39 +03:00 |
|
Vladimir Stoilov
|
74b4ce0869
|
Make default pid to be -1 and remove unsafe code
|
2023-06-23 16:41:21 +03:00 |
|
Daniel
|
8a09ba6045
|
Revamp connection handling flow to fix race condition and support info-only packets
|
2023-06-21 15:31:45 +02:00 |
|
Vladimir Stoilov
|
0164463ee5
|
Add udp process detection with ebpf
|
2023-06-07 19:10:41 +03:00 |
|
Vladimir Stoilov
|
0caa3e792c
|
Add tcp process detection with ebpf
|
2023-06-07 16:36:44 +03:00 |
|
Vladimir Stoilov
|
7e09245540
|
Reduce running of background tasks on sleep mode
|
2023-04-19 17:47:16 +02:00 |
|
Daniel
|
64b721dcc8
|
Fix special process loading
|
2023-04-06 14:37:44 +02:00 |
|
Daniel
|
6070366399
|
Ignore if parent process does not exist
|
2023-03-30 15:54:12 +02:00 |
|
Vladimir Stoilov
|
79d6bcb6c6
|
Fix parent process key an refactoring
|
2023-03-30 15:18:18 +02:00 |
|
Vladimir Stoilov
|
834282cb0e
|
Fix process identification key
|
2023-03-30 14:43:38 +02:00 |
|
Daniel
|
90ea59204f
|
Add support for snap
|
2022-11-14 20:07:54 +01:00 |
|
Daniel
|
b9127d3f91
|
Integrate special profiles into regular profile fetching for correct profile udpates
|
2022-10-13 11:20:04 +02:00 |
|
Daniel
|
eac91ae627
|
Improve logging and context usage
|
2022-10-11 14:51:33 +02:00 |
|
Daniel
|
144e5d8312
|
Fix linter errors
|
2022-10-10 22:57:27 +02:00 |
|
Patrick Pacher
|
3c8157fd91
|
Implement review changes
|
2022-10-10 22:36:39 +02:00 |
|
Patrick Pacher
|
0810eee7bb
|
Fix linter errors
|
2022-10-10 22:36:39 +02:00 |
|
Patrick Pacher
|
77c0d954a9
|
Add support for cmdline matching and add basic interpreter support
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
b3007b71db
|
Add default icon for Windows services
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
595f4c0106
|
Improve profile metadata handling
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
c4943a96b1
|
Expose registered process tags via API
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
f329e40da7
|
Improve network tags for external requests
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
c22fb3316b
|
Add support for Windows Store tags
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
fd0ce5732d
|
Add first tag handlers for svchost, app image, net
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
d60329e130
|
Collect env, tags and and matching path for processes
|
2022-10-10 22:36:39 +02:00 |
|
Daniel
|
8cf882f4d4
|
Update Go, deps and linter
|
2022-08-30 16:13:26 +02:00 |
|
Daniel
|
0b81fb5516
|
Mitigate double read locks on the layered profile
|
2022-08-02 13:59:13 +02:00 |
|
Patrick Pacher
|
d49232a37b
|
Improve app-auth request flow and implement review suggestions
|
2022-07-27 15:14:52 +02:00 |
|
Daniel
|
bb782ba98f
|
Add check to ensure matching PID constants
|
2022-06-22 09:56:47 +02:00 |
|
Daniel
|
49e79fe3fd
|
Detect responses to multi/broadcast queries
|
2022-05-24 11:20:01 +02:00 |
|
Daniel
|
7a9001b7de
|
Split unattributed connections into to Unidentified App and Network Noise
|
2022-03-09 15:44:54 +01:00 |
|
Daniel
|
888b33918a
|
Fix deleting profiles
|
2022-02-15 14:35:28 +01:00 |
|
Daniel
|
2cbaf126e9
|
Remove deprecated MarkUsed functions
|
2022-02-15 13:59:56 +01:00 |
|
Daniel
|
60d8664e7b
|
Fix tests and linters
|
2022-02-02 12:48:42 +01:00 |
|
Daniel
|
07c727c643
|
Improve system resolver paths for linux
|
2021-11-24 16:37:26 +01:00 |
|
Daniel
|
0f08918bbd
|
Add nscd to system resolver detection
|
2021-11-18 16:31:46 +01:00 |
|
Daniel
|
f86f3ecab7
|
Fix and improve minor issues
|
2021-06-01 12:54:50 +02:00 |
|
Daniel
|
bbb1c828e8
|
Implement review suggestions
|
2021-04-03 16:03:00 +02:00 |
|
Daniel
|
3abaca1d90
|
Improve System DNS matching on Windows
|
2021-03-29 13:37:39 +02:00 |
|
Daniel
|
d8882042d1
|
Implement review suggestion
|
2021-03-23 14:41:42 +01:00 |
|