1 talk mention this tool across 1 BSides chapters.
Host-based continuous monitoring tool that scans logs and filesystems for known/generic attack vectors, detects file changes, and can quarantine hostile files or generate IP blocks for web servers