blacktop / seccomp-genLinks
Docker Secure Computing Profile Generator
☆49Updated 4 years ago
Alternatives and similar repositories for seccomp-gen
Users that are interested in seccomp-gen are comparing it to the libraries listed below
Sorting:
- Build custom Docker seccomp profiles for containers by finding syscalls it uses.☆90Updated 3 weeks ago
- ☆29Updated 9 months ago
- Going Florida on container keyring masks. A tool to demonstrate the ineffectivity containers have on isolating Linux Kernel keyrings.☆44Updated last week
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆17Updated 4 years ago
- egrets monitors egress☆46Updated 5 years ago
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆57Updated 10 months ago
- Security scanning & static analysis tool☆93Updated last year
- Kubernetes Pwnage for all☆56Updated 4 years ago
- A Security Scanner for Go☆26Updated 6 years ago
- ☆27Updated last month
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆161Updated 2 years ago
- A POC for DNS spoofing in kubernetes clusters. Runs with minimum capabilities, on default installations of kuberentes.☆78Updated 6 years ago
- INTERCEPT / Policy as Code Auditing & Compliance☆85Updated 2 weeks ago
- a tool to audit the istio service mesh☆173Updated 4 years ago
- Variety of kubectl krew tools usually security focused☆34Updated 3 months ago
- ☆44Updated 5 months ago
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- Kubernetes Easter CTF☆59Updated 5 years ago
- A gitbook for doing a null Bangalore session on linux container security to discuss and teach namespaces, cgroups etc.☆20Updated 8 years ago
- ☆27Updated 5 months ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations,…☆60Updated last month
- Writing a container in a few lines of Go code, as seen at DockerCon 2017 and on O'Reilly Safari☆40Updated 5 years ago
- Automated GKE Kubelet Impersonation and Cluster Secret Stealer via kube-env☆103Updated 6 years ago
- ☆13Updated 9 months ago
- K8s API Honeypot with Active Defense Capabilities☆42Updated last year
- Provide a shell like interface by utilizing osquery's distributed API☆81Updated 5 years ago
- ☆90Updated this week
- The Container Security Book—a free book for practitioners☆82Updated 5 years ago