bytedance / vArmor-ebpf
vArmor-ebpf is a specialized project dedicated to maintaining the BPF code utilized by vArmor.
☆27Updated last month
Alternatives and similar repositories for vArmor-ebpf:
Users that are interested in vArmor-ebpf are comparing it to the libraries listed below
- Learning eBPF from zero to hero☆37Updated last year
- 《eBPF 云原生安全:原理与实践》书中示例程序的完整源代码☆83Updated last month
- CVE-2022-0185 POC and Docker and Analysis write up☆37Updated 2 years ago
- A penetration toolkit for container environment☆77Updated 2 weeks ago
- 🌶 一些和容器化/容器编排/服务网格等技术相关的安全代码片段[自用备份]☆80Updated 3 years ago
- 与 eBPF 相关的精选项目的中文清单☆89Updated last year
- ☆28Updated 3 years ago
- Trace deep kernel events through eBPF and lsm hooks☆35Updated 3 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆125Updated last year
- ☆47Updated 2 years ago
- Insert payload through the program set by -toolexec. Just a toy☆25Updated 3 years ago
- This manager helps handle the life cycle of your eBPF programs☆124Updated last week
- collections of container escape techniques 🐿☆69Updated 3 years ago
- Taint analysis implementation based on Heros and Soot☆44Updated 8 months ago
- Inject ELF into remote process☆130Updated last year
- vArmor is a cloud native container sandbox system based on AppArmor/BPF/Seccomp. It also includes multiple built-in protection rules that…☆312Updated this week
- 《深入理解Semgrep》Finding vulnerabilities with Semgrep.☆43Updated last year
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆57Updated last year
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆287Updated 2 months ago
- S&P2023 Paper☆39Updated 2 years ago
- Google V8 with OpenRASP builtins☆56Updated 3 years ago
- CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸☆32Updated 2 years ago
- a dataflow analysis framework implemented in Go, like soot☆33Updated 2 years ago
- Cloud Native Security News☆59Updated last month
- The BTFhub Archive repository provides BTF files for those published kernels that lack native support for embedded BTF, thereby enhancing…☆104Updated this week
- SysTracer: Linux 系统活动跟踪器☆31Updated 2 years ago
- 通过Linux netlink NETLINK_CONNECTOR 协议实时进行监控本机进程情况。☆13Updated 5 years ago
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities (Best Practical Paper Award of RAID 2024)☆42Updated last week
- Container (Docker) escape exploits☆50Updated 3 years ago
- Go Agent is a go application probe of DongTai IAST, which collects method invocation data during runtime of Go application by dynamic hoo…☆41Updated 3 weeks ago