containers / oci-seccomp-bpf-hook
OCI hook to trace syscalls and generate a seccomp profile
ā321Updated this week
Alternatives and similar repositories for oci-seccomp-bpf-hook:
Users that are interested in oci-seccomp-bpf-hook are comparing it to the libraries listed below
- A tool for in-depth analysis of container checkpointsā113Updated 2 weeks ago
- š BPFBox š¦ Exploring process confinement in eBPFā102Updated last year
- Making containers more secure with eBPF and Linux Security Modules (LSM)ā227Updated 10 months ago
- Source-code based coverage for eBPF programs actually running in the Linux kernelā131Updated 2 months ago
- agent for handling seccomp descriptors for container runtimesā46Updated last year
- An eBPF program debuggerā204Updated 2 years ago
- Now moved into `github.com/inspektor-gadget/inspektor-gadget/pkg/gadget-collection/gadgets/traceloop`. Tracing system calls in cgroups uā¦ā198Updated 2 years ago
- eBPF & Cilium Office Hoursā319Updated 4 months ago
- libsinsp, libscap, the kernel module driver, and the eBPF driver sourcesā264Updated this week
- bpflock - eBPF driven security for locking and auditing Linux machinesā147Updated 3 years ago
- SELinux policy files for Container Runtimesā266Updated this week
- An eBPF Manager for Linux and Kubernetesā611Updated this week
- Kit for building Falco drivers: kernel modules or eBPF probesā65Updated this week
- ptrace-based event producer for udigā67Updated 2 years ago
- Build custom Docker seccomp profiles for containers by finding syscalls it uses.ā90Updated 4 years ago
- This repo contains various examples to learn, explore, and experiment with eBPF.ā61Updated last week
- ebpf.io Websiteā123Updated 2 weeks ago
- The Kubernetes Security Profiles Operatorā754Updated this week
- Falco rule repositoryā120Updated last week
- Falco plugins registryā92Updated this week
- Administrative tooling for Falcoā102Updated this week
- Linux Kernel Runtime Integrity with eBPFā174Updated last year
- ā34Updated last year
- Operator to deploy confidential containers runtimeā128Updated last week
- Generate a variety of suspect actions that are detected by Falco rulesetsā103Updated last month
- āØš CNCF Fuzzersā123Updated 2 months ago
- Community curated list of System and Network policy templates for the KubeArmor and Ciliumā43Updated 3 weeks ago
- ā35Updated last week
- A process level network security monitoring and enforcement project for Kubernetes, using eBPFā43Updated 4 years ago
- BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.ā58Updated 2 years ago