linux-audit / audit-kernel
GitHub mirror of the Linux Kernel's audit repository
☆148Updated this week
Alternatives and similar repositories for audit-kernel:
Users that are interested in audit-kernel are comparing it to the libraries listed below
- Documentation and specifications☆189Updated 2 months ago
- File Access Policy Daemon☆208Updated 3 weeks ago
- Trusted Path Execution (TPE) Linux Kernel Module☆158Updated 5 years ago
- Suricata Extreme Performance Tuning guide☆206Updated 7 years ago
- SELinux Reference Policy v2☆321Updated last week
- eBPF - extended Berkeley Packet Filter tooling☆123Updated 2 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆115Updated 6 years ago
- Fork from git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git (unstable and force pushed!)☆20Updated last year
- LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces.☆297Updated last week
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆117Updated last year
- A simple, self-contained regression test suite for the Linux Kernel's audit subsystem☆22Updated 6 months ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆101Updated last year
- Debian GNU/Linux based Services Profiles☆232Updated 3 years ago
- BootHole vulnerability (CVE-2020-10713). detection script, links and other mitigation related materials☆65Updated 4 years ago
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆42Updated 4 years ago
- ☆83Updated 7 years ago
- Vault Exploit Defense☆124Updated 6 months ago
- SELinux Policy Analysis Tools☆166Updated 2 months ago
- Command-line utility to scan the system and report on potential vulnerabilities, based on public CVE data☆262Updated last year
- SysFlow documentation and issues tracker☆46Updated 5 months ago
- IPE is a Linux Security Module (LSM), which allows for a configurable policy to enforce integrity requirements on the whole system. IPE b…☆60Updated 2 months ago
- viewssld is a free, open source, non-terminating SSLv2/SSLv3/TLS traffic decryption daemon for Snort, and other Network Intrusion Detecti…☆74Updated 7 years ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆146Updated 3 years ago
- add dpdk interface and packet processing to suricata in worker mode☆64Updated 4 years ago
- refpolicy has moved to https://github.com/SELinuxProject/refpolicy☆126Updated 6 years ago
- Passive Real-time Asset Detection System☆234Updated 9 months ago
- This project is no longer maintained. There's a successor at https://github.com/zeek/zeek-agent-v2☆123Updated 4 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆127Updated 2 years ago
- The tool for updating your Suricata rules.☆266Updated 3 months ago
- C Library for working with network packet traces☆159Updated last month