landlock-lsm / linux
Linux kernel - See Landlock issues
☆40Updated last week
Alternatives and similar repositories for linux:
Users that are interested in linux are comparing it to the libraries listed below
- A high level language for SELinux policy☆59Updated last month
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆116Updated 2 years ago
- Sandboxing File System☆46Updated 5 years ago
- a friendly wrapper around ptrace☆132Updated 3 years ago
- IPE is a Linux Security Module (LSM), which allows for a configurable policy to enforce integrity requirements on the whole system. IPE b…☆61Updated 2 months ago
- estimate peak virtual memory use☆18Updated 2 weeks ago
- Detect patterns of bad behavior in function calls☆26Updated 4 years ago
- Secretgrind: a Valgrind analysis tool to detect secrets in memory☆59Updated 8 years ago
- TPM 2.0 Implementation☆47Updated last month
- Verifying constant-time code with symbolic execution☆42Updated 3 years ago
- eBPF - extended Berkeley Packet Filter tooling☆123Updated 2 years ago
- Rust native library for TPM 2.0 operations. Heavily work in progress.☆13Updated 2 years ago
- opensnoop in pure C using eBPF☆100Updated 2 years ago
- Fuzzer to automatically find side-channel (timing) vulnerabilities☆117Updated 3 years ago
- Differential fuzzing for elliptic curves☆23Updated last year
- A tweakable block cipher☆31Updated 10 months ago
- A place to store my toy linux-security modules.☆92Updated 4 years ago
- unofficial grsecurity gpl release☆22Updated 6 years ago
- Static code analysis of refpolicy style SELinux policy☆42Updated 3 weeks ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆102Updated last year
- Usage of enabled-by-default hardening-related compiler flags across Linux distributions☆53Updated 2 months ago
- The Hedron Microhypervisor☆78Updated last year
- A tool to help you understand TPM commands and responses.☆41Updated 4 months ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆129Updated 6 months ago
- A Genetic File, Syscall and Network Fuzzer.☆58Updated 7 years ago
- Demonstrate ability to read memfd_secret() data from the kernel☆58Updated last year
- Library for AMD SEV☆20Updated 3 years ago
- Tool tracing syscalls in a fast way using eBPF linux kernel feature☆97Updated 2 years ago
- Converged Security Suite for Intel & AMD platform security features☆60Updated 2 months ago
- C-friendly API to make path resolution safer on Linux.☆93Updated last week