linux-audit / audit-kernel
GitHub mirror of the Linux Kernel's audit repository
☆146Updated 2 weeks ago
Alternatives and similar repositories for audit-kernel:
Users that are interested in audit-kernel are comparing it to the libraries listed below
- Documentation and specifications☆188Updated 3 weeks ago
- Linux audit userspace repository☆616Updated last week
- File Access Policy Daemon☆207Updated last week
- Trusted Path Execution (TPE) Linux Kernel Module☆158Updated 5 years ago
- SELinux Reference Policy v2☆312Updated this week
- eBPF - extended Berkeley Packet Filter tooling☆122Updated 2 years ago
- Debian GNU/Linux based Services Profiles☆232Updated 2 years ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆117Updated last year
- Fork from git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git (unstable and force pushed!)☆20Updated last year
- refpolicy has moved to https://github.com/SELinuxProject/refpolicy☆126Updated 6 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆127Updated 4 months ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆101Updated last year
- SELinux Policy Analysis Tools☆166Updated last month
- Suricata Extreme Performance Tuning guide - Mark II☆115Updated 6 years ago
- A place to store my toy linux-security modules.☆92Updated 4 years ago
- IPE is a Linux Security Module (LSM), which allows for a configurable policy to enforce integrity requirements on the whole system. IPE b…☆60Updated 3 weeks ago
- SELinux policy analysis tool☆16Updated 4 years ago
- A simple, self-contained regression test suite for the Linux Kernel's audit subsystem☆22Updated 5 months ago
- Suricata Extreme Performance Tuning guide☆207Updated 6 years ago
- Example application of how to passively monitor multiple sockets on Linux.☆74Updated 7 years ago
- BootHole vulnerability (CVE-2020-10713). detection script, links and other mitigation related materials☆64Updated 4 years ago
- A language and library for specifying syscall filtering policies.☆309Updated 6 months ago
- Linux kernel - See Landlock issues☆36Updated 2 months ago
- libcare -- Patch Userspace Code in Live Processes☆148Updated 4 years ago
- LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces.☆297Updated 2 months ago
- ☆69Updated 10 months ago
- Tool tracing syscalls in a fast way using eBPF linux kernel feature☆99Updated last year
- Red Canary's eBPF Sensor☆101Updated 7 months ago
- Libcap-ng is a library for Linux that makes using posix capabilities easy.☆73Updated 5 months ago
- BPFd (Deprecated, please see README.md) : Berkeley Packet Filter daemon (BPFd). Makes it possible to run BCC tools across systems.☆96Updated 3 years ago