Ross ROSS = Recommend OSS · open-source software intelligence for agents

al0ne/LinuxCheck

Linux应急处置/信息搜集/漏洞检测工具,支持基础配置/网络流量/任务计划/环境变量/用户信息/Services/bash/恶意文件/内核Rootkit/SSH/Webshell/挖矿文件/挖矿进程/供应链/服务器风险等13类70+项检查 observed · 2026-08-28

github.com/al0ne/LinuxCheck · Shell · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

23/100

  • Activity 0
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2816
  • days_rel: n/a
  • days_push: 806
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

2096 stars · 430 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A shell-based Linux emergency response and information gathering tool that performs 70+ security checks across 13 categories, including rootkits, webshells, cryptominers, SSH backdoors, and supply chain poisoning. It generates a Markdown report of findings and can automatically upload reports to a webhook for bulk incident response across many machines.

Use cases

  • check a compromised linux server for rootkits and backdoors
  • detect webshells and cryptomining malware on a server
  • collect system and network information during incident response
  • audit cron jobs, users, and SSH configuration for suspicious changes
  • run bulk security checks across many servers and upload reports
  • scan for suspicious files, SUID binaries, and reverse shells

When to choose

  • you need a fast, dependency-light shell script for Linux incident response
  • you want a single tool covering rootkits, webshells, miners, and misconfigurations
  • you need to triage many machines and collect Markdown reports centrally

When to avoid

  • you need continuous runtime monitoring or alerting rather than point-in-time checks
  • you need Windows or macOS host forensics
  • you require a GUI dashboard or long-term agent-based EDR capabilities

Facets

cli-tool · maturity active

security vulnerability-scanning developer-tools monitoring security operating-systems cli incident-response forensics rootkit-detection webshell-detection shell-script security-audit malware-detection command-line devops linux

1 source

Member repositories

RepositoryRoleHealth v2
al0ne/LinuxCheckmain23

For agents

markdown · JSON · MCP: product_card(name="al0ne/LinuxCheck")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem