NationalSecurityAgency / seabeeLinks
Hardens eBPF tools against privileged attackers via policy-based access controls
☆47Updated this week
Alternatives and similar repositories for seabee
Users that are interested in seabee are comparing it to the libraries listed below
Sorting:
- A project to collect eBPF verifier errors and how they can be resolved☆46Updated 9 months ago
- [Experimental] jail for Go modules☆95Updated 3 weeks ago
- A tool to help programmers debug and analyze Linux Kernel BPF verification failures.☆46Updated this week
- Making containers more secure with eBPF and Linux Security Modules (LSM)☆231Updated last year
- Services for storing and searching information about software content and vulnerabilities☆53Updated this week
- A tool for in-depth analysis of container checkpoints☆122Updated last month
- Jibril: A performant and low impact Linux runtime security tool agent.☆13Updated 5 months ago
- 🔍 Seccomp profiling and function-level tracing tool.☆169Updated this week
- OCI hook to trace syscalls and generate a seccomp profile☆336Updated 3 weeks ago
- eBPF Map Prometheus Exporter☆24Updated 3 months ago
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- TC, XDP, KProbe and CGroup eBPF based simple Ethernet interface traffic monitor and reporting tool☆125Updated last month
- Code-snippets for developing eBPF programs☆17Updated last month
- tool for building and running VMs for development and testing☆106Updated last week
- An query language and interactive tooling to work with SBOM data.☆14Updated last year
- Shape your traffic the BPF way☆80Updated 2 years ago
- This repo contains various examples to learn, explore, and experiment with eBPF.☆62Updated 3 weeks ago
- A CLI used to work with the Wolfi OSS project☆66Updated last week
- suidsnoop is a tool based on eBPF LSM programs that logs whenever a suid binary is executed and implements custom allow/deny lists.☆16Updated 4 years ago
- go library for processing container images and simulating a squash filesystem☆97Updated this week
- golang nftables library☆31Updated 3 weeks ago
- A layer 2 switch for VMs powered by eBPF☆43Updated 8 months ago
- Run Go tests on a custom kernel☆29Updated 3 months ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated this week
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆135Updated 9 months ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆67Updated last week
- A tool to create, transform and attest VEX metadata☆163Updated last week
- Go module to generate and transform VEX documents☆49Updated this week
- Go implementation of witness☆39Updated last week
- A replacement for "kubectl exec" that works over WebSocket connections.☆42Updated last year