SELinuxProject / selint
Static code analysis of refpolicy style SELinux policy
☆38Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for selint
- IPE is a Linux Security Module (LSM), which allows for a configurable policy to enforce integrity requirements on the whole system. IPE b…☆57Updated 3 weeks ago
- ☆15Updated 4 years ago
- ☆84Updated 4 months ago
- ☆22Updated 2 years ago
- LKRG bypass methods☆71Updated 4 years ago
- Linux kernel - See Landlock issues☆35Updated last month
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆59Updated 3 weeks ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆113Updated last year
- MapGuard is a library that enforces a security policy for mmap based page allocations.☆21Updated 2 years ago
- Automate generation of syzkaller's grammar☆14Updated 2 years ago
- A place to systematically store software bill of materials (SBOM) documents.☆44Updated last year
- VM demonstration various symlink and hard link attacks against secure boot. See the whitepaper at: https://www.anvilventures.com/blog/def…☆14Updated 4 years ago
- unofficial grsecurity gpl release☆22Updated 5 years ago
- Example program using eBPF to log data being based in using shell pipes☆40Updated 3 years ago
- Conferences, tools, papers, etc.☆43Updated 2 months ago
- A system call interception tool☆53Updated last year
- A framework for parsing binary data.☆16Updated 2 years ago
- Easy-to-use tool which autogenerates a type-aware fuzzer from a debuggable executable.☆22Updated last year
- F-Secure Armory Drive - USB encrypted drive with mobile unlock over BLE☆53Updated last month
- Crowdsourced fuzzing cluster. 🚀☆21Updated 3 years ago
- egrets monitors egress☆45Updated 4 years ago
- A high level language for SELinux policy☆56Updated this week
- eBPF - extended Berkeley Packet Filter tooling☆122Updated 2 years ago
- ☆25Updated last year
- Build custom Docker seccomp profiles for containers by finding syscalls it uses.☆89Updated 4 years ago
- A Tale of Two Worlds: Assessing the Vulnerability of Enclave Shielding Runtimes☆46Updated last year
- Various utilities useful for developers writing BPF tools☆29Updated last year
- ☆19Updated 2 months ago
- A tool which tries to map CVEs from NVD to packages in supported ecosystems (Maven, NPM, PyPI).☆12Updated last year