5GSEC / nimbusLinks
Intent driven security automation framework
☆26Updated 5 months ago
Alternatives and similar repositories for nimbus
Users that are interested in nimbus are comparing it to the libraries listed below
Sorting:
- Discover least permissive security posture, Network Microsegmentation, and Application behaviour based on visibility/observability data e…☆34Updated 8 months ago
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆50Updated 3 weeks ago
- Runtime detection and response for malicious events in Kubernetes workloads☆46Updated last year
- Find your favorite eBee☆74Updated 9 months ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated last month
- sigstore the hard way!☆118Updated 5 months ago
- Falco plugins registry☆112Updated this week
- Curated list of SPIFFE and SPIRE resources☆62Updated 3 years ago
- KubeArmor cli tool aka kArmor☆43Updated last week
- Generate a variety of suspect actions that are detected by Falco rulesets☆114Updated 8 months ago
- Response Engine for managing threats in your Kubernetes☆189Updated 2 months ago
- Administrative tooling for Falco☆121Updated this week
- Scans SBOMs for vulnerabilities with Grype☆85Updated this week
- AI-generated remediations for Falco audit events☆72Updated 2 years ago
- Tutorials about Cilium and SPIRE integration☆30Updated 4 years ago
- Kubernetes audit logging, when you don't control the control plane☆90Updated last week
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- This repo contains various examples to learn, explore, and experiment with eBPF.☆63Updated last week
- A tool for in-depth analysis of container checkpoints☆139Updated this week
- Automatically register and generate AWS, GCP & Azure IAM roles, X.509 certificates and username/password pairs for Kubernetes pods using …☆66Updated 7 months ago
- Goby CLI eBPF Project Generator☆34Updated 11 months ago
- sigstore installation walkthrough, local☆62Updated last month
- A place for policy work group related proposals and prototypes.☆65Updated 8 months ago
- Runtime security plug to protect user containers☆67Updated this week
- Trust Dexter to ensure that all your images are pinned by digest for better security☆31Updated 2 years ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- Integrates Spiffe and Vault to have secretless authentication☆97Updated last week
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆85Updated last week
- This projects contains pre-made policies for Kubernetes Validating Admission Policies. This policy library is based on Kubescape controls…☆78Updated 3 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated last year