Gui774ume / network-security-probe
A process level network security monitoring and enforcement project for Kubernetes, using eBPF
☆40Updated 4 years ago
Related projects: ⓘ
- Linux Kernel Runtime Integrity with eBPF☆163Updated 9 months ago
- monitor and protect SSH sessions with eBPF☆65Updated 3 years ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆98Updated 8 months ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆136Updated 2 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆120Updated last year
- A file system events notifier based on eBPF☆54Updated last year
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆129Updated 2 years ago
- Trace deep kernel events through eBPF and lsm hooks☆32Updated 3 years ago
- Example BPF program with LSM hooks☆31Updated 3 years ago
- ☆82Updated 2 months ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆113Updated last year
- agent for handling seccomp descriptors for container runtimes☆41Updated 7 months ago
- Elastic's eBPF☆62Updated this week
- Kit for building Falco drivers: kernel modules or eBPF probes☆64Updated last week
- eBPF - extended Berkeley Packet Filter tooling☆121Updated 2 years ago
- Get live information about applications that make network requests (based on eBPF)☆43Updated 3 weeks ago
- eBPF based syscalls, files and network events tracing framework☆82Updated 4 years ago
- Making containers more secure with eBPF and Linux Security Modules (LSM)☆212Updated 3 months ago
- SysFlow documentation and issues tracker☆45Updated 3 months ago
- ptrace-based event producer for udig☆66Updated 2 years ago
- Example program using eBPF to log data being based in using shell pipes☆40Updated 3 years ago
- Red Canary's eBPF Sensor☆97Updated 2 months ago
- An eBPF program debugger☆193Updated 2 years ago
- CVE-2019-5736 POCs☆81Updated 4 years ago
- LSM BPF module to block pwnkit (CVE-2021-4034) like exploits☆20Updated 2 years ago
- ☆93Updated 6 months ago
- Falco rule repository☆92Updated this week
- This manager helps handle the life cycle of your eBPF programs☆118Updated last week
- This tool set can generate SECCOMP profiles for Docker images. It mainly relies on static analysis, making its results more reliable than…☆62Updated 2 years ago
- Linux endpoint events for BPF enabled systems☆24Updated last year