lockc-project / lockc
Making containers more secure with eBPF and Linux Security Modules (LSM)
β228Updated 11 months ago
Alternatives and similar repositories for lockc:
Users that are interested in lockc are comparing it to the libraries listed below
- bpflock - eBPF driven security for locking and auditing Linux machinesβ147Updated 3 years ago
- A curated list of awesome eBPF π projects using aya-rs and Rust π¦β125Updated last month
- agent for handling seccomp descriptors for container runtimesβ46Updated last year
- A cargo-generate template for Rust eBPF Projects using Ayaβ97Updated 2 weeks ago
- Rust bindings to libbpf from the Linux kernelβ222Updated last week
- The Aya Book is an introductory book about using the Rust Programming Language and Aya library to build extended Berkley Packet Filter (eβ¦β89Updated this week
- A Rust library for managing eBPF programs.β120Updated last year
- OCI hook to trace syscalls and generate a seccomp profileβ323Updated 2 weeks ago
- Source-code based coverage for eBPF programs actually running in the Linux kernelβ132Updated 3 months ago
- π BPFBox π¦ Exploring process confinement in eBPFβ102Updated last year
- The BTFhub Archive repository provides BTF files for those published kernels that lack native support for embedded BTF, thereby enhancingβ¦β110Updated last week
- An eBPF Manager for Linux and Kubernetesβ622Updated this week
- Data first monitoring agent using (e)BPF, built on RedBPFβ407Updated 2 years ago
- A file system events notifier based on eBPFβ66Updated 2 years ago
- Elastic's eBPFβ68Updated last month
- Linux Kernel Runtime Integrity with eBPFβ175Updated last year
- β114Updated 2 years ago
- This manager helps handle the life cycle of your eBPF programsβ135Updated this week
- LSM BPF module to block pwnkit (CVE-2021-4034) like exploitsβ21Updated 3 years ago
- Sample ebpf programs to analyzeβ91Updated 4 months ago
- BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.β58Updated 2 years ago
- monitor and protect SSH sessions with eBPFβ68Updated 3 years ago
- Kit for building Falco drivers: kernel modules or eBPF probesβ65Updated last week
- Various eBPF programs for tracing network connectionsβ30Updated 3 years ago
- suidsnoop is a tool based on eBPF LSM programs that logs whenever a suid binary is executed and implements custom allow/deny lists.β16Updated 3 years ago
- An eBPF program debuggerβ206Updated 2 years ago
- eBPF Standard Documentationβ44Updated 7 months ago
- Layer 4 Kubernetes load-balancerβ410Updated last week
- β36Updated this week
- Shape your traffic the BPF wayβ79Updated last year