Skip to content
@enki-polvo

Project POLVO from CTRC@ENKI

Polvo from CTRC@ENKI

Polvo Project

project-mascot

So that anyone can detect cyber threats...

The Polvo Project develops a lightweight agent program, reducing the fatigue of security officers. It collects, analyzes, and abstracts various system logs into 'actions' (technically called 'traces') in real-time.

Traditional blue-team security software is primarily focused on collecting raw system logs, storing them in a database, and visualizing them on sophisticated dashboards. This led to the entire observation system being unobservable and overly complicated; ultimately, it failed to satisfy the needs of the people in the field, suggesting valuable information that could be used to take action. We aim to directly address this issue by providing real insights with actionable steps.

System overview of the Polvo Project

polvo-architecture-aws drawio

Popular repositories Loading

  1. polvo-logger polvo-logger Public

    A simple logging utility written in Go. It provides a structured and efficient way to log messages for your applications.

    Go

  2. .github .github Public

  3. enki-polvo.github.io enki-polvo.github.io Public

    Public documentation for the organization enki-polvo

  4. rcs-graph rcs-graph Public

    Forked from hongsam14/sigraph

    It is a knowledge base that detects behavioral patterns from Otel Trace

    Python

Repositories

Showing 4 of 4 repositories

Top languages

Loading…

Most used topics

Loading…