chen-keinan / kube-knark
Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster
☆36Updated 3 years ago
Alternatives and similar repositories for kube-knark:
Users that are interested in kube-knark are comparing it to the libraries listed below
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆54Updated last month
- ☆25Updated 8 months ago
- Kubernetes offensive framework built in eBPF☆37Updated last year
- Dynamic Outbound Firewall Authorizer☆22Updated 2 years ago
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆65Updated last month
- Aqua Enterprise scanner as a plug-in vulnerability scanner in the Harbor registry☆36Updated 3 months ago
- ☆29Updated 3 years ago
- egrets monitors egress☆46Updated 4 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last week
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated this week
- ☆20Updated 8 months ago
- Use eBPF to inject chaos into local processes☆64Updated 4 months ago
- Intent driven security automation framework☆25Updated this week
- Red team tool that emulates the SolarWinds CI compromise attack vector.☆22Updated 10 months ago
- eBPF Steering Committee (BSC)☆14Updated 2 weeks ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆21Updated 5 months ago
- A repository to store Rad Fingerprinting data.☆23Updated 5 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆36Updated 10 months ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆49Updated 3 years ago
- mesh-kridik is an open-source security checker that performs various security checks on a Kubernetes cluster with istio service mesh and …☆26Updated last month
- Publications from the eBPF foundation☆22Updated 2 months ago
- Evolution process of The Falco Project☆48Updated this week
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆18Updated 3 years ago
- ptrace-based event producer for udig☆67Updated 2 years ago
- An query language and interactive tooling to work with SBOM data.☆14Updated 3 months ago
- This tool have the power to hide any PID/directory in the Linux kernel☆22Updated 4 months ago
- a tool to audit the istio service mesh☆173Updated 3 years ago
- ☆11Updated last month
- Kubernetes audit logging, when you don't control the control plane☆67Updated this week
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆27Updated 11 months ago