chen-keinan / kube-knarkLinks
Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster
☆37Updated 3 years ago
Alternatives and similar repositories for kube-knark
Users that are interested in kube-knark are comparing it to the libraries listed below
Sorting:
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆57Updated 10 months ago
- ☆27Updated 5 months ago
- ☆44Updated 5 months ago
- Kubernetes offensive framework built in eBPF☆39Updated 2 years ago
- egrets monitors egress☆46Updated 5 years ago
- ☆29Updated 9 months ago
- A repository to store Rad Fingerprinting data.☆24Updated last year
- Kit for building Falco drivers: kernel modules or eBPF probes☆67Updated last week
- a tool to audit the istio service mesh☆173Updated 4 years ago
- Red team tool that emulates the SolarWinds CI compromise attack vector.☆24Updated last year
- Use eBPF to inject chaos into local processes☆65Updated last year
- Inspect SSL/TLS traffic using eBPF☆20Updated last year
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆69Updated 2 months ago
- ☆13Updated 9 months ago
- INTERCEPT / Policy as Code Auditing & Compliance☆85Updated 2 weeks ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆30Updated 8 months ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆161Updated 2 years ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆110Updated 5 months ago
- ☆84Updated last week
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆17Updated 4 years ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- ☆74Updated 5 months ago
- Evolution process of The Falco Project☆57Updated this week
- Detect compiler names and versions from ELF files☆27Updated 5 months ago
- A POC for DNS spoofing in kubernetes clusters. Runs with minimum capabilities, on default installations of kuberentes.☆78Updated 6 years ago
- netcat using netstack userspace library and eBPF☆137Updated 4 years ago
- Docker Secure Computing Profile Generator☆49Updated 4 years ago
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated 2 years ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated 2 years ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆42Updated last year