NationalSecurityAgency / seabeeLinks
Hardens eBPF tools against privileged attackers via policy-based access controls
☆52Updated last month
Alternatives and similar repositories for seabee
Users that are interested in seabee are comparing it to the libraries listed below
Sorting:
- Making containers more secure with eBPF and Linux Security Modules (LSM)☆232Updated last year
- [Experimental] jail for Go modules☆104Updated 3 weeks ago
- A tool to help programmers debug and analyze Linux Kernel BPF verification failures.☆79Updated last month
- A project to collect eBPF verifier errors and how they can be resolved☆51Updated 11 months ago
- A tool for in-depth analysis of container checkpoints☆129Updated 3 weeks ago
- OCI hook to trace syscalls and generate a seccomp profile☆338Updated 3 weeks ago
- Shape your traffic the BPF way☆80Updated 2 years ago
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- A replacement for "kubectl exec" that works over WebSocket connections.☆42Updated last year
- TC, XDP, KProbe and CGroup eBPF based simple Ethernet interface traffic monitor and reporting tool☆129Updated last month
- 🔍 Function-level tracing tool for Seccomp profiling, with eBPF☆176Updated 2 months ago
- tool for building and running VMs for development and testing☆112Updated this week
- Security Observation Tool written in Rust inspired by Tetragon☆28Updated 4 months ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆69Updated 3 weeks ago
- An query language and interactive tooling to work with SBOM data.☆14Updated last year
- A CLI used to work with the Wolfi OSS project☆67Updated 3 weeks ago
- eBPF Map Prometheus Exporter☆26Updated 5 months ago
- ☆34Updated last year
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆136Updated 11 months ago
- [Soft-deprecated] Reproducible apt/dnf/apk/pacman, with content-addressing☆111Updated 2 years ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated 3 weeks ago
- Superseded by https://github.com/guacsec/trustify☆53Updated 3 weeks ago
- go library for processing container images and simulating a squash filesystem☆101Updated last week
- This repo contains various examples to learn, explore, and experiment with eBPF.☆63Updated 3 months ago
- suidsnoop is a tool based on eBPF LSM programs that logs whenever a suid binary is executed and implements custom allow/deny lists.☆16Updated 4 years ago
- Runtime detection and response for malicious events in Kubernetes workloads☆46Updated last year
- Find your favorite eBee☆74Updated 9 months ago
- sget is a keyless safe script retrieval and execution tool☆18Updated 3 years ago
- The kernel tracer that attaches eBPF probes to containers for capturing TLS traffic☆29Updated 2 weeks ago
- Run Go tests on a custom kernel☆32Updated 3 weeks ago