containerscrew / rootisnakedLinks
Simple root privilege escalation detection using eBPF π
β35Updated 4 months ago
Alternatives and similar repositories for rootisnaked
Users that are interested in rootisnaked are comparing it to the libraries listed below
Sorting:
- Publications from the eBPF foundationβ28Updated 2 months ago
- β86Updated last week
- β13Updated last year
- β90Updated 2 months ago
- A simple mitmproxy blueprint to intercept HTTPS traffic from app running on Kubernetesβ74Updated 9 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.β75Updated 2 years ago
- β28Updated 8 months ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).β30Updated 11 months ago
- egrets monitors egressβ46Updated 5 years ago
- Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG Appβ¦β71Updated 10 months ago
- Kubernetes offensive framework built in eBPFβ39Updated 2 years ago
- Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations,β¦β70Updated 4 months ago
- rxtls is a hyper-optimized, per-core Certificate Transparency (CT) log processor built for one purpose: to extract and process 100,000+ Xβ¦β55Updated last month
- Demo repository for running eBPF in GitHub Actionsβ23Updated 10 months ago
- β63Updated 2 years ago
- β93Updated 3 months ago
- Use eBPF to inject chaos into local processesβ67Updated last year
- proof-of-concept example of using eBPF to Monitor for eBPF Map tamperingβ22Updated 4 years ago
- Open Source eBPF Malware Analysis Frameworkβ54Updated last year
- Adversary emulation for EDR/SIEM testing (macOS/Linux)β53Updated last week
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.β23Updated last year
- Universal Profiling as a desktop appβ100Updated this week
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.β25Updated last year
- AttachΓ© provides an emulation layer for Cloud Provider IMDS APIsβ60Updated last month
- Linux Process Discovery. C Library, Go bindings, Runtime.β223Updated 3 years ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes clusterβ36Updated 4 years ago
- Pentester-focused Docker registry tool to enumerate and pull imagesβ36Updated 3 months ago
- π Function-level tracing tool for Seccomp profiling, with eBPFβ178Updated 2 months ago
- Automated testing, generation & manipulation of #osquery packsβ74Updated last year
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).β88Updated 2 years ago