chen-keinan / kube-knark
Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster
☆35Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for kube-knark
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆54Updated 6 months ago
- ☆24Updated 6 months ago
- ☆20Updated 6 months ago
- ☆29Updated 3 years ago
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆65Updated 3 months ago
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated last year
- Aqua Enterprise scanner as a plug-in vulnerability scanner in the Harbor registry☆36Updated last month
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆22Updated this week
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Dynamic Outbound Firewall Authorizer☆21Updated 2 years ago
- Red team tool that emulates the SolarWinds CI compromise attack vector.☆22Updated 8 months ago
- Kubernetes offensive framework built in eBPF☆35Updated last year
- An query language and interactive tooling to work with SBOM data.☆14Updated last month
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆18Updated 3 years ago
- egrets monitors egress☆45Updated 4 years ago
- mesh-kridik is an open-source security checker that performs various security checks on a Kubernetes cluster with istio service mesh and …☆26Updated last month
- Detect compiler names and versions from ELF files☆24Updated 2 months ago
- Kubernetes Native, Runtime Container Image Scanning☆39Updated 2 years ago
- Kilt is a project that defines how to inject foreign apps into containers☆13Updated 11 months ago
- ☆9Updated 7 months ago
- Collection of kbrew recipes☆10Updated 2 years ago
- Evolution process of The Falco Project☆48Updated this week
- Use eBPF to inject chaos into local processes☆61Updated 2 months ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- Clean up unused AWS resources☆13Updated 2 years ago
- A collection of Docker and Kubernetes resources☆18Updated 2 years ago
- Enable Falco to read audit logs from EKS☆11Updated 3 years ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆27Updated 8 months ago
- Static analysis for CloudFormation templates to identify common misconfiguration☆58Updated 2 years ago