containers / oci-seccomp-bpf-hookLinks
OCI hook to trace syscalls and generate a seccomp profile
☆326Updated this week
Alternatives and similar repositories for oci-seccomp-bpf-hook
Users that are interested in oci-seccomp-bpf-hook are comparing it to the libraries listed below
Sorting:
- A tool for in-depth analysis of container checkpoints☆118Updated last month
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- Making containers more secure with eBPF and Linux Security Modules (LSM)☆229Updated last year
- eBPF & Cilium Office Hours☆327Updated last month
- The Kubernetes Security Profiles Operator☆766Updated this week
- SELinux policy files for Container Runtimes☆274Updated last week
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆104Updated last year
- This repo contains various examples to learn, explore, and experiment with eBPF.☆60Updated 2 weeks ago
- Response Engine for managing threats in your Kubernetes☆165Updated last week
- Falco plugins registry☆98Updated this week
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆132Updated 5 months ago
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆46Updated 3 months ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated 2 weeks ago
- ☆34Updated last year
- Artifact Ratification Framework (CNCF Sandbox)☆268Updated this week
- Now moved into `github.com/inspektor-gadget/inspektor-gadget/pkg/gadget-collection/gadgets/traceloop`. Tracing system calls in cgroups u…☆198Updated 2 years ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆106Updated last month
- sigstore the hard way!☆115Updated last year
- bpflock - eBPF driven security for locking and auditing Linux machines☆148Updated 3 years ago
- Find your favorite eBee☆69Updated 3 months ago
- Linux Process Discovery. C Library, Go bindings, Runtime.☆222Updated 2 years ago
- A command line tool to automatically generate seccomp profiles.☆26Updated 4 years ago
- A tool to render a pie chart of memory usage (bytes_memlock) of BPF maps on the system 🥧☆19Updated last year
- Administrative tooling for Falco☆108Updated last week
- ptrace-based event producer for udig☆67Updated 2 years ago
- libsinsp, libscap, the kernel module driver, and the eBPF driver sources☆280Updated this week
- A CLI tool to sign and verify artifacts☆414Updated last week
- ebpf.io Website☆125Updated this week
- Operator to deploy confidential containers runtime☆143Updated 2 weeks ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year