gdestuynder / audisp-json

42 stars 17 forks source link

Raw socket detection #14

Closed mpurzynski closed 5 years ago

mpurzynski commented 5 years ago

How difficult it would be to also log the socket() call? I'd like to detect raw sockets the moment they are opened.

mpurzynski commented 5 years ago

Let's add the listen() syscall to the list

gdestuynder commented 5 years ago

available in 2.2