0xflux / Sanctum

Sanctum is a proof-of-concept EDR like tool, designed to detect modern malware techniques, above and beyond the capabilities of antivirus. Built in Rust.
https://fluxsec.red/sanctum-edr-intro
3 stars 1 forks source link

AV - SHIELD integration #5

Open 0xflux opened 1 week ago

0xflux commented 1 week ago

Alert user to something bad happening and allow them to make a decision to allow or kill. Feature name SHIELD. Process should be hung until user's decision is made.

This should be part of the telemetry management issue #16