kondukto-io / kntrlLinks
kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this by monitoring kernel calls, and denying access as soon as your defined behaviour is detected. For more: https://kntrl.dev
☆125Updated 3 months ago
Alternatives and similar repositories for kntrl
Users that are interested in kntrl are comparing it to the libraries listed below
Sorting:
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated 11 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆114Updated last week
- Runtime Security Solution for your CI/CD Pipeline☆112Updated last month
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆104Updated last year
- The security workflow engine!☆135Updated last month
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆40Updated last year
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆210Updated this week
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆59Updated 11 months ago
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆60Updated last year
- ☆114Updated 4 months ago
- ## Auto-archived due to inactivity. ## Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Securit…☆37Updated last year
- ☆85Updated 2 months ago
- ☆75Updated 2 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆88Updated last year
- A full insecure kubernetes application for testing security tools☆91Updated 2 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated 2 years ago
- ☆56Updated last week
- ☆183Updated 8 months ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆41Updated 2 years ago
- Compares and analyzes GCP IAM roles.☆77Updated 9 months ago
- boostsecurityio/poutine☆350Updated last month
- A tool to check the security settings of Github Organizations.☆75Updated 2 years ago
- Validate the isolation posture of your container environment.☆307Updated this week
- Semgrep-based Policy Controller for Kubernetes☆47Updated 8 months ago
- ☆103Updated last month
- AWS honey token manager☆89Updated last year
- Scans your Github Actions for security issues☆88Updated last month
- Kubernetes audit logging, when you don't control the control plane☆90Updated last week
- prel(iminary) is an application that temporarily assigns Google Cloud IAM Roles and includes an approval process.☆46Updated last week