criticalstack / swollLinks
an experimental suite of applications and APIs for monitoring kernel-level activity on a live Kubernetes cluster
☆69Updated 4 years ago
Alternatives and similar repositories for swoll
Users that are interested in swoll are comparing it to the libraries listed below
Sorting:
- [EXPERIMENTAL] Extend osquery to report on Kubernetes☆228Updated 4 years ago
- ☆37Updated 5 years ago
- Administrative tooling for Falco☆117Updated 2 weeks ago
- A tool for bootstrapping Kubernetes☆68Updated 4 years ago
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- cloud native software supply chain ☁️🔗☆65Updated 4 years ago
- MagTape Policy-as-Code for Kubernetes☆151Updated last year
- 🎟 Voucher creates attestations for Binary Authorization☆74Updated last month
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆63Updated 4 years ago
- ☆114Updated 8 months ago
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆67Updated last week
- Cloud Native Security Hub - Security Resources☆54Updated 5 years ago
- Manage AppAmormor profiles for Kubernetes cluster☆42Updated 2 years ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated last week
- Kit for building Falco drivers: kernel modules or eBPF probes☆69Updated 2 weeks ago
- ⭕️Snooping on the Kubernetes OpenAPI communications☆97Updated this week
- A kubectl plugin which triggers a Sysdig capture☆102Updated 2 years ago
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆81Updated 2 years ago
- Webhook server that evaluates WebAssembly policies to validate Kubernetes requests☆152Updated this week
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆35Updated last month
- Envoy External Authorization API Bridge To SPIFFE Workload API☆47Updated last year
- sigstore the hard way!☆116Updated 5 months ago
- Kubernetes Security Process and Security Committee docs☆174Updated 7 months ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated 3 weeks ago
- ☆64Updated last year
- ptrace-based event producer for udig☆68Updated 3 years ago
- Let's share some eBPF love!☆45Updated 5 years ago
- vault-auth-spire is an authentication plugin for Hashicorp Vault which allows logging into Vault using a Spire provided SVID.☆41Updated 2 years ago
- A data access control framework for Open Policy Agent☆37Updated last year
- ☆35Updated 4 years ago