GrapheneOS / linux-hardened
Minimal supplement to upstream Kernel Self Protection Project changes. Features already provided by SELinux + Yama and archs other than multiarch arm64 / x86_64 aren't in scope. Only tags have stable history. Shared IRC channel with KSPP: irc.freenode.net ##linux-hardened. Currently maintained at https://github.com/anthraxx/linux-hardened.
☆404Updated last year
Alternatives and similar repositories for linux-hardened:
Users that are interested in linux-hardened are comparing it to the libraries listed below
- Unofficial forward ports of the last publicly available grsecurity patch☆151Updated 6 years ago
- Minimal supplement to upstream Kernel Self Protection Project changes. Features already provided by SELinux + Yama and archs other than m…☆574Updated this week
- PKGBUILDs to build SELinux enabled packages for Arch Linux☆147Updated this week
- Qubes Security Pack☆487Updated this week
- Qubes component: antievilmaid☆145Updated 3 months ago
- HardenedBSD implements strong exploit mitigations and security hardening technologies on top of FreeBSD, with a direct focus on the nexus…☆381Updated this week
- Qubes component: core-admin☆126Updated last week
- My tool for working with Intel Management Engine - RETIRED REPO (see coreboot for new upstream)☆155Updated 6 years ago
- A minimal Linux that runs as a coreboot or LinuxBoot ROM payload to provide a secure, flexible boot environment for laptops, workstations…☆1,428Updated 2 weeks ago
- HardenedBSD stable repo. Installer images built from this repo: http://installer.hardenedbsd.org/☆132Updated 3 years ago
- Encrypted boot partition manager with UEFI Secure Boot support☆204Updated last year
- GitHub mirror of the SELinux kernel repository☆149Updated this week
- Qubes component: linux-kernel☆88Updated this week
- LUKS support for storing keys in TPM NVRAM☆186Updated 6 years ago
- deprecated - maybe replaced by: `apparmor.d`☆87Updated 11 months ago
- [MIRROR] Package management system☆549Updated this week
- UEFI shim loader☆877Updated this week
- DEPRECATED TPM enabled GRUB2 Bootloader☆193Updated 3 years ago
- Linux Kernel Runtime Guard☆416Updated last week
- Track packages in testing repository☆38Updated 2 years ago
- Qubes documentation☆348Updated last week
- Refresh your GnuPG keyring without disclosing your whole contact list to the world☆226Updated last year
- Check whether AMT is enabled and provisioned under Linux☆466Updated 6 years ago
- A Mirage firewall VM for QubesOS☆212Updated 2 weeks ago
- Intel ME 11.x Firmware Images Unpacker☆613Updated 6 years ago
- dracut the event driven initramfs infrastructure☆603Updated 4 months ago
- SELinux policy with Arch Linux specific changes. Based on the refrence policy☆31Updated last year
- OpenBSD tool to sign and verify signatures on files. Portable version.☆282Updated 9 months ago
- USBGuard is a software framework for implementing USB device authorization policies (what kind of USB devices are authorized) as well as …☆1,151Updated 6 months ago
- OZ: a sandboxing system targeting everyday workstation applications☆431Updated 6 years ago