containerscrew / rootisnakedLinks
Simple root privilege escalation detection using eBPF π
β35Updated 2 months ago
Alternatives and similar repositories for rootisnaked
Users that are interested in rootisnaked are comparing it to the libraries listed below
Sorting:
- Publications from the eBPF foundationβ28Updated 3 weeks ago
- β85Updated last month
- β13Updated 10 months ago
- β89Updated 3 weeks ago
- A simple mitmproxy blueprint to intercept HTTPS traffic from app running on Kubernetesβ74Updated 8 months ago
- rxtls is a hyper-optimized, per-core Certificate Transparency (CT) log processor built for one purpose: to extract and process 100,000+ Xβ¦β55Updated 3 weeks ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).β30Updated 10 months ago
- β28Updated 7 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.β75Updated 2 years ago
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko geneβ¦β104Updated last year
- Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations,β¦β69Updated 3 months ago
- Adversary emulation for EDR/SIEM testing (macOS/Linux)β52Updated 2 weeks ago
- Kubernetes offensive framework built in eBPFβ39Updated 2 years ago
- Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG Appβ¦β71Updated 8 months ago
- egrets monitors egressβ46Updated 5 years ago
- proof-of-concept example of using eBPF to Monitor for eBPF Map tamperingβ22Updated 4 years ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.β23Updated last year
- Linux Process Discovery. C Library, Go bindings, Runtime.β223Updated 3 years ago
- AttachΓ© provides an emulation layer for Cloud Provider IMDS APIsβ60Updated last year
- Use eBPF to inject chaos into local processesβ66Updated last year
- Automated testing, generation & manipulation of #osquery packsβ73Updated last year
- β92Updated last month
- Universal Profiling as a desktop appβ98Updated this week
- Post-Quantum Cryptography Scanner - Scan SSH/TLS servers for PQC supportβ101Updated last month
- π Function-level tracing tool for Seccomp profiling, with eBPFβ175Updated last month
- Pentester-focused Docker registry tool to enumerate and pull imagesβ37Updated 2 months ago
- β63Updated 2 years ago
- K8s API Honeypot with Active Defense Capabilitiesβ44Updated last year
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).β88Updated last year
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.β25Updated last year