Yelp / pidtree-bcc
eBPF tool for logging process ancestry of outbound TCP connections
☆42Updated last month
Alternatives and similar repositories for pidtree-bcc:
Users that are interested in pidtree-bcc are comparing it to the libraries listed below
- ptrace-based event producer for udig☆67Updated 2 years ago
- Easier tracing of packets through iptables☆33Updated 9 months ago
- The Container Security Book—a free book for practitioners☆82Updated 4 years ago
- ☆19Updated 5 years ago
- Find binary files not installed through package manager☆11Updated last year
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated this week
- ☆42Updated 4 years ago
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆110Updated 4 years ago
- Falco Running with Ptrace(2) for Kernel Events☆36Updated 4 years ago
- BPF based FIM solution☆42Updated last year
- agent for handling seccomp descriptors for container runtimes☆44Updated last year
- efficient linux security monitoring☆26Updated 6 years ago
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆130Updated 3 weeks ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆118Updated last year
- ☆18Updated 4 years ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆101Updated last year
- Identity-Aware Proxy☆21Updated 2 years ago
- certgrep is a cross-platform command line tool that extracts SSL certificates from either a network interface or a local PCAP file.☆17Updated 3 years ago
- Kernel assisted microcontainer packer☆24Updated 6 years ago
- A package for handling ssh certificates☆45Updated 3 years ago
- Kilt is a project that defines how to inject foreign apps into containers☆13Updated last year
- IOModule manager and plugins☆38Updated 8 years ago
- ☆29Updated last month
- A tool to list and diagnose bpf programs. (Who watches the watchers..? :)☆95Updated 4 years ago
- Inject Falco and pdig into a running kubernetes pod☆13Updated 4 years ago
- eBPF based syscalls, files and network events tracing framework☆93Updated 4 years ago
- Falco container runtime security extras (default rulesets and more)☆49Updated 5 years ago
- Build the debian kernel and rootfs for firecracker☆23Updated 4 years ago
- Code coverage tooling for eBPF☆36Updated 7 months ago
- Slides and Workshop Instructions for a BPF Introduction @Sqreen☆11Updated 5 years ago