5GSEC / nimbus
Intent driven security automation framework
☆25Updated this week
Alternatives and similar repositories for nimbus:
Users that are interested in nimbus are comparing it to the libraries listed below
- Discover least permissive security posture, Network Microsegmentation, and Application behaviour based on visibility/observability data e…☆32Updated last year
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆43Updated last month
- KubeArmor cli tool aka kArmor☆41Updated this week
- k8tls (pronounced cattles), to assess server port security by detecting its TLS and certificates configuration.☆19Updated 3 months ago
- Runtime detection and response for malicious events in Kubernetes workloads☆43Updated last year
- Find your favorite eBee☆61Updated 2 months ago
- AI-generated remediations for Falco audit events☆70Updated last year
- Generate a variety of suspect actions that are detected by Falco rulesets☆101Updated this week
- Tutorials about Cilium and SPIRE integration☆27Updated 3 years ago
- ☆25Updated 10 months ago
- A place for policy work group related proposals and prototypes.☆65Updated 2 months ago
- Response Engine for managing threats in your Kubernetes☆150Updated this week
- Runtime security plug to protect user containers☆65Updated last month
- Administrative tooling for Falco☆93Updated this week
- A tool for in-depth analysis of container checkpoints☆110Updated last week
- Falco plugins registry☆89Updated this week
- eBPF Map Prometheus Exporter☆19Updated last month
- Sneefer is a PoC project showing how to filter out irrelevent vulnerabilities from container image vulnerability scan results. It is base…☆26Updated last year
- Kubernetes audit logging, when you don't control the control plane☆71Updated this week
- Kube State Metrics `CustomResourceState` configurations for Gateway API resources☆20Updated last month
- Ebpf faqs, samples, tooling☆44Updated 3 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆20Updated 5 months ago
- ☆24Updated 3 months ago
- agent for handling seccomp descriptors for container runtimes☆45Updated last year
- sigstore the hard way!☆110Updated 10 months ago
- This projects contains pre-made policies for Kubernetes Validating Admission Policies. This policy library is based on Kubescape controls…☆52Updated last week
- Integrates Spiffe and Vault to have secretless authentication☆87Updated last week
- Kubevuln is an in-cluster component of the Kubescape security platform. It scans container images for vulnerabilities, using Grype as its…☆21Updated this week