eminaktas / threat-hunting-at-scale-demoLinks
Threat Hunting at Scale: Auditing Thousands of Clusters With Falco + Fluent
☆12Updated 3 years ago
Alternatives and similar repositories for threat-hunting-at-scale-demo
Users that are interested in threat-hunting-at-scale-demo are comparing it to the libraries listed below
Sorting:
- ☆28Updated 8 months ago
- Kubernetes Native, Runtime Container Image Scanning☆39Updated 3 years ago
- Ansible role to setup Falco, behavioral security with sysdig☆44Updated this week
- ☆29Updated 11 months ago
- docker image with useful network and container tools and SSH☆69Updated last year
- Evolution process of The Falco Project☆59Updated this week
- Kubernetes Pod RBAC Breakout☆39Updated 2 years ago
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆58Updated last year
- List your tfsec issues in the QuickFix window with this plugin.☆12Updated 3 years ago
- etcd-k8s-extract takes in an etcd data directory or db file used in kubernetes, extracts the kubernetes resources and then writes the res…☆38Updated last year
- ☆93Updated 2 months ago
- a tool to audit the istio service mesh☆174Updated 4 years ago
- Demos for several kubernetes security features☆64Updated last year
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆69Updated last month
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆24Updated this week
- Detect intrusions that happened in your Kubernetes cluster through audit logs using Falco☆63Updated 4 years ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆114Updated 8 months ago
- Kubernetes security and vulnerability tools and utilities.☆57Updated 4 years ago
- Privateer is a plugin-based framework to validate the status of deployed resources.☆16Updated last month
- Scans SBOMs for vulnerabilities with Grype☆85Updated this week
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆63Updated 4 years ago
- Vulnerability Scanner Suite based on grype and syft from anchore☆52Updated 3 years ago
- AWACS for RBAC. Tool for auditing CRUD permissions in Kubernetes' RBAC.☆47Updated last year
- Runtime security plug to protect user containers☆67Updated this week
- Falco plugins registry☆112Updated last week
- ☆86Updated 3 weeks ago
- Slack alert bot for matching Github Audit Events☆10Updated last year
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated 3 years ago
- Creates PolicyReports based on the different Trivy Operator CRDs like VulnerabilityReports☆63Updated last week