micromize-dev / micromizeLinks
micromize is a security hardening tool designed to detect and break the post-exploit kill chain for containerized applications, leveraging BPF LSM.
☆40Updated this week
Alternatives and similar repositories for micromize
Users that are interested in micromize are comparing it to the libraries listed below
Sorting:
- Goby CLI eBPF Project Generator☆34Updated 11 months ago
- Intent driven security automation framework☆26Updated 4 months ago
- Security advisory data for Wolfi☆20Updated this week
- ☆73Updated 7 months ago
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆60Updated this week
- Sneefer is a PoC project showing how to filter out irrelevent vulnerabilities from container image vulnerability scan results. It is base…☆26Updated 2 years ago
- Trust Dexter to ensure that all your images are pinned by digest for better security☆31Updated 2 years ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated last year
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated 3 weeks ago
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆104Updated last year
- ☆56Updated 3 weeks ago
- ☆20Updated 7 months ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆125Updated 3 months ago
- Kubernetes audit logging, when you don't control the control plane☆90Updated this week
- Administrative tooling for Falco☆121Updated 3 weeks ago
- An query language and interactive tooling to work with SBOM data.☆14Updated last year
- Go module to generate and transform VEX documents☆52Updated 3 weeks ago
- Ran is an experimental offensive tool for Kubernetes clusters with the goal to enable quick emulation of adversary techniques and a colle…☆29Updated last week
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- Code-snippets for developing eBPF programs☆18Updated 3 months ago
- eBPF based sector level disk replication tool for disaster recovery purpose☆33Updated last month
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated 3 weeks ago
- An SBOM query language and associated utilities☆55Updated last year
- ☆58Updated 3 years ago
- Scans SBOMs for vulnerabilities with Grype☆85Updated last week
- This repository contains various code snippets and learnings around eBPF☆84Updated last year
- ☆16Updated 4 months ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆103Updated this week
- 🔍 Function-level tracing tool for Seccomp profiling, with eBPF☆176Updated last month
- ☆62Updated 9 months ago