Detect suspicious behaviors at runtime using eBPF tracing and research-driven behavioral signatures.
Cost / License
- Free
- Open Source (Apache-2.0)
Platforms
- Linux
CrowdStrike Falcon is described as 'SaaS-based endpoint security platform offering real-time detection, prevention, and response using advanced machine learning, graph data, and threat intelligence cloud' and is a Anti-Virus app in the security & privacy category. There are more than 50 alternatives to CrowdStrike Falcon for a variety of platforms, including Windows, Mac, Linux, Android and Web-based apps. The best CrowdStrike Falcon alternative is Malwarebytes Anti-Malware, which is free. Other great apps like CrowdStrike Falcon are ClamAV, Avast Free Antivirus, Microsoft Defender and Spybot - Search & Destroy.
Detect suspicious behaviors at runtime using eBPF tracing and research-driven behavioral signatures.
HOL Guard is an open-source, local-first runtime security layer for AI agents and automation. It sits between any AI harness and the tools it wants to run, pausing risky package installs, secret reads, shell commands, and MCP changes for review before execution.




SafeNetClub is an antivirus software that protects your PC against cyber threats. The application is connected with a realtime virus database to scan the system, all incoming traffic and files to avoid damage of the computer, spy attacks and data theft.

Nuvm unifies 9 security scanners into one dashboard — cloud misconfigurations, container CVEs, code vulnerabilities, leaked secrets, risky dependencies, IaC issues, Kubernetes manifests, web attack surface, and automated compliance checks for CIS, PCI, and HIPAA.

Gridinsoft Anti-Malware detects and removes viruses, ransomware, spyware, and other threats to secure your computer — without slowing it down.
MalwareTerminator kills annoying browser toolbars with a single click! Many programs and download portals provide you not only with your requested software, but also with an unrequested browser toolbar.


The AURORA Agent is a lightweight and customisable endpoint agent based on Sigma. It uses Event Tracing for Windows (ETW) to recreate events that are very similar to the events generated by Microsoft’s Sysmon and applies Sigma rules and IOCs to them.


Deepengine is an affordable and simple platform for vulnerability scanning, helping SMBs build robust products, ease compliance, and save money.

Falco is the first runtime security project to join CNCF as an incubation-level project. Falco acts as a security camera detecting unexpected behavior, intrusions, and data theft in real time.

TRAPMINE Platform combines proven technologies such as machine learning, behavior monitoring and exploit prevention techniques in a single agent to provide fool-proof defense against exploit attempts, file-less malware, ransomware and other forms of targeted attacks.



