linux-audit / audit-kernel
GitHub mirror of the Linux Kernel's audit repository
☆150Updated 2 weeks ago
Alternatives and similar repositories for audit-kernel:
Users that are interested in audit-kernel are comparing it to the libraries listed below
- Documentation and specifications☆194Updated 3 months ago
- Linux audit userspace repository☆635Updated this week
- File Access Policy Daemon☆210Updated this week
- Suricata Extreme Performance Tuning guide☆208Updated 7 years ago
- SELinux Reference Policy v2☆324Updated last week
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆116Updated 2 years ago
- Suricata Extreme Performance Tuning guide - Mark II☆117Updated 7 years ago
- Trusted Path Execution (TPE) Linux Kernel Module☆159Updated 5 years ago
- LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces.☆299Updated 3 weeks ago
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆102Updated last year
- viewssld is a free, open source, non-terminating SSLv2/SSLv3/TLS traffic decryption daemon for Snort, and other Network Intrusion Detecti…☆74Updated 7 years ago
- A simple, self-contained regression test suite for the Linux Kernel's audit subsystem☆23Updated 7 months ago
- Red Canary's eBPF Sensor☆104Updated 9 months ago
- eBPF - extended Berkeley Packet Filter tooling☆123Updated 2 years ago
- Fork from git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git (unstable and force pushed!)☆20Updated last year
- The tool for updating your Suricata rules.☆270Updated 2 weeks ago
- The Linux port of the Sysinternals Sysmon tool.☆260Updated last month
- add dpdk interface and packet processing to suricata in worker mode☆65Updated 4 years ago
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆43Updated 4 years ago
- Transform vmlinuz into a fully debuggable vmlinux that can be used with /proc/kcore☆130Updated 6 months ago
- a network packet capture compiler☆199Updated 2 years ago
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆177Updated 7 months ago
- Linux Kernel Module designed to help analyze volatile memory in the linux kernel☆116Updated last year
- refpolicy has moved to https://github.com/SELinuxProject/refpolicy☆126Updated 6 years ago
- Security Technical Implementation Guide for Debian☆151Updated 2 years ago
- ☆168Updated 3 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆129Updated 2 years ago
- Linux Kernel Runtime Integrity with eBPF☆174Updated last year
- This project is no longer maintained. There's a successor at https://github.com/zeek/zeek-agent-v2☆123Updated 4 years ago
- SELinux Policy Analysis Tools☆179Updated 3 months ago