GrapheneOS / linux-hardened
Minimal supplement to upstream Kernel Self Protection Project changes. Features already provided by SELinux + Yama and archs other than multiarch arm64 / x86_64 aren't in scope. Only tags have stable history. Currently maintained at https://github.com/anthraxx/linux-hardened.
☆418Updated 2 years ago
Alternatives and similar repositories for linux-hardened:
Users that are interested in linux-hardened are comparing it to the libraries listed below
- Unofficial forward ports of the last publicly available grsecurity patch☆151Updated 6 years ago
- PKGBUILDs to build SELinux enabled packages for Arch Linux☆157Updated this week
- Qubes component: antievilmaid☆146Updated 7 months ago
- HardenedBSD implements strong exploit mitigations and security hardening technologies on top of FreeBSD, with a direct focus on the nexus…☆386Updated this week
- Qubes Security Pack☆502Updated last month
- Qubes component: core-admin☆133Updated this week
- Qubes documentation☆356Updated this week
- The Qubes OS Project issue tracker☆559Updated 3 weeks ago
- A minimal Linux that runs as a coreboot or LinuxBoot ROM payload to provide a secure, flexible boot environment for laptops, workstations…☆1,462Updated this week
- My tool for working with Intel Management Engine - RETIRED REPO (see coreboot for new upstream)☆157Updated 6 years ago
- Linux Kernel Runtime Guard☆440Updated this week
- The Qubes OS Project Official Website☆330Updated this week
- Encrypted boot partition manager with UEFI Secure Boot support☆204Updated last year
- Check whether AMT is enabled and provisioned under Linux☆466Updated 6 years ago
- zuluCrypt is a front end to cryptsetup and tcplay and it allows easy management of encrypted block devices☆533Updated last week
- A utility like pkg-audit for Arch Linux. Based on Arch Security Team data.☆331Updated 8 months ago
- Intel ME 11.x Firmware Images Unpacker☆621Updated 6 years ago
- USBGuard is a software framework for implementing USB device authorization policies (what kind of USB devices are authorized) as well as …☆1,192Updated 3 weeks ago
- Hardened allocator designed for modern systems. It has integration into Android's Bionic libc and can be used externally with musl and gl…☆1,397Updated this week
- A Mirage firewall VM for QubesOS☆217Updated 3 weeks ago
- See the new issue tracker for GrapheneOS at https://github.com/GrapheneOS/os_issue_tracker.☆112Updated 6 years ago
- HardenedBSD stable repo. Installer images built from this repo: http://installer.hardenedbsd.org/☆132Updated 4 years ago
- Documentation for the Heads firmware project☆88Updated this week
- Nitrokey's Application (Win, Linux, Mac)☆290Updated 2 years ago
- grsecurity is the most advanced Linux kernel hardening patchset. This repository, not affiliated with the upstream project, aggregate mos…☆85Updated 7 years ago
- Qubes OS Cheat Sheet - Contains commands for DomU and Dom0 in combination with some examples☆111Updated 6 years ago
- Fend off malware at Qubes VM startup☆74Updated last year
- VPN configuration in Qubes OS☆129Updated last year
- deprecated - maybe replaced by: `apparmor.d`☆84Updated last year
- Hardened Android standard C library. Some of the past hardening has not yet been ported from Marshmallow, Nougat and Oreo to this Android…☆106Updated this week