Yelp / pidtree-bccLinks
eBPF tool for logging process ancestry of outbound TCP connections
☆44Updated 2 months ago
Alternatives and similar repositories for pidtree-bcc
Users that are interested in pidtree-bcc are comparing it to the libraries listed below
Sorting:
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆112Updated 4 years ago
- ptrace-based event producer for udig☆68Updated 3 years ago
- BPF based FIM solution☆42Updated 2 years ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆66Updated this week
- Build custom Docker seccomp profiles for containers by finding syscalls it uses.☆90Updated 4 years ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆105Updated last year
- A tool to list and diagnose bpf programs. (Who watches the watchers..? :)☆95Updated 4 years ago
- The Container Security Book—a free book for practitioners☆83Updated 5 years ago
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- eBPF based syscalls, files and network events tracing framework☆93Updated 5 years ago
- ☆29Updated 6 months ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆117Updated 2 years ago
- an experimental suite of applications and APIs for monitoring kernel-level activity on a live Kubernetes cluster☆69Updated 3 years ago
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆132Updated 6 months ago
- Easier tracing of packets through iptables☆35Updated last month
- Docker Secure Computing Profile Generator☆48Updated 3 years ago
- ☆37Updated 4 years ago
- Now moved into `github.com/inspektor-gadget/inspektor-gadget/pkg/gadget-collection/gadgets/traceloop`. Tracing system calls in cgroups u…☆198Updated 2 years ago
- PAL: A secret bootstrapping tool for Docker☆84Updated 10 months ago
- Falco Running with Ptrace(2) for Kernel Events☆36Updated 4 years ago
- Tools for kubernetes pod network tapping☆42Updated 6 years ago
- Experimental CLI that takes a Docker image url and runs it in a Firecracker VM☆65Updated 6 years ago
- ☆41Updated 4 years ago
- ☆17Updated 5 years ago
- [Deplicated] Now we have more sophisticated (and compact) implementation in ipftrace2 repository. Please check it as well.☆58Updated 5 years ago
- [EXPERIMENTAL] Extend osquery to report on Kubernetes☆228Updated 4 years ago
- Administrative tooling for Falco☆110Updated this week
- proof-of-concept example of using eBPF to Monitor for eBPF Map tampering☆22Updated 4 years ago
- Falco container runtime security extras (default rulesets and more)☆49Updated 6 years ago
- IOModule manager and plugins☆37Updated 8 years ago