FotisLouk / docker-secLinks
Automatic AppArmor management for Docker containers
☆15Updated 2 years ago
Alternatives and similar repositories for docker-sec
Users that are interested in docker-sec are comparing it to the libraries listed below
Sorting:
- ☆11Updated 9 years ago
- This tool set can generate SECCOMP profiles for Docker images. It mainly relies on static analysis, making its results more reliable than…☆67Updated 3 years ago
- BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.☆59Updated 3 years ago
- For paper Container-IMA: https://www.usenix.org/system/files/raid2019-luo.pdf☆11Updated 5 years ago
- ☆28Updated 3 years ago
- Contextualizing System Calls in Containers for Anomaly-Based Intrusion Detection (CHIDS) - CCSW'22☆25Updated 2 years ago
- This repository is used to analysis the shared resources of different containers☆31Updated last year
- Generates kernel patch for CamFlow Linux Provenance Capture.☆28Updated last year
- eAudit suite for recording provenance-related system calls on Linux☆13Updated 2 years ago
- libsinsp, libscap, the kernel module driver, and the eBPF driver sources☆289Updated this week
- ☆13Updated 4 years ago
- A novel container runtime, aka confidential container, for cloud-native confidential computing and enclave runtime ecosystem.☆622Updated 2 years ago
- LID-DS is an intrusion detection data simulation framework.☆51Updated 5 months ago
- Ratel - a new framework for instruction-level interposition on enclaved applications☆24Updated 2 years ago
- Practical and Efficient in-TEE Verification of Privacy Compliance☆45Updated 9 months ago
- COIN Attacks: on Insecurity of Enclave Untrusted Interfaces in SGX - ASPLOS 2020☆26Updated 2 years ago
- dataSet for kubAnomaly model☆20Updated 2 years ago
- kprobes template☆60Updated 4 years ago
- Kernel isolation tester.☆17Updated 3 years ago
- This repository contains the source code related to the research paper titled "Temporal System Call Specialization for Attack Surface Red…☆37Updated 11 months ago
- ☆14Updated 7 months ago
- Linux SVSM (Secure VM Service Module) for secure x86 virtualization in Rust☆10Updated 2 years ago
- 这是OpenCloudOS社区创始委员会的工作区☆18Updated 3 years ago
- Jinzhao Disk (JinDisk) is a log-structured secure block device for TEEs. This repo is JinDisk's Linux version.☆36Updated 2 years ago
- This project is a fuse extent, which contains fuse-crash-recovery framework and fuse-base-ebpf performance improvement.☆26Updated 3 years ago
- Origin-sensitive Control Flow Integrity (OS-CFI) - USENIX Security 2019☆38Updated 3 years ago
- This repository contains the code for the paper "A flow-based IDS using Machine Learning in eBPF", Contact: Maximilian Bachl☆106Updated 2 months ago
- AECS(Attestation based Enclave Configuration Service)☆14Updated last year
- Template designed to get new developers with libbpf development.☆70Updated 2 weeks ago
- Jinzhao Attest provides unified attestation workflow for TEE compatibility, usability and security.☆35Updated last year