Silk Guardian is an anti-forensic Linux Kernel Module (LKM) kill-switch that monitors USB ports for changes, deletes files, and shuts down the computer. It was inspired by usbkill and serves as a fun project for learning. The tool is designed to prevent unauthorized access to the system and enhance security, especially in scenarios where physical access to the machine is a concern. To run Silk Guardian, compile the module using 'make', load it using 'sudo insmod silk.ko', and ensure the linux-headers package is installed. It is recommended to use (partial) disk encryption in conjunction with this tool for enhanced protection.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A comprehensive incident response tool for Windows computers, providing advanced memory forensics and access to locked systems.
Stegextract is a Bash script that extracts hidden files and strings from images, supporting PNG, JPG, and GIF formats.
A library to access and parse Windows XML Event Log (EVTX) format, useful for digital forensics and incident response.
A digital forensics tool that provides read-only access to file-system objects from various storage media types and file formats.
A library for accessing and parsing Microsoft Internet Explorer cache files (index.dat) to extract URLs, timestamps, and cached content for digital forensic analysis.
A library for accessing and parsing Windows NT Registry File (REGF) format files, designed for digital forensics and registry analysis applications.
A library for read-only access to QEMU Copy-On-Write (QCOW) image files, supporting multiple versions and compression formats for digital forensics analysis.
Exterro is a data risk management platform that optimizes e-discovery, digital forensics, and cybersecurity compliance operations.