micromize-dev / micromizeLinks
micromize is a security hardening tool designed to detect and break the post-exploit kill chain for containerized applications, leveraging BPF LSM.
☆43Updated 3 weeks ago
Alternatives and similar repositories for micromize
Users that are interested in micromize are comparing it to the libraries listed below
Sorting:
- Intent driven security automation framework☆26Updated 5 months ago
- ☆73Updated 8 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated last year
- ☆57Updated this week
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆60Updated 3 weeks ago
- Trust Dexter to ensure that all your images are pinned by digest for better security☆31Updated 2 years ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated last month
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆103Updated last year
- Kubernetes audit logging, when you don't control the control plane☆90Updated last week
- ☆28Updated 8 months ago
- Sneefer is a PoC project showing how to filter out irrelevent vulnerabilities from container image vulnerability scan results. It is base…☆26Updated 2 years ago
- sigstore the hard way!☆118Updated 5 months ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆125Updated 4 months ago
- Goby CLI eBPF Project Generator☆34Updated 11 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆43Updated last year
- Runtime security plug to protect user containers☆67Updated this week
- Code-snippets for developing eBPF programs☆19Updated 3 months ago
- Curated list of SPIFFE and SPIRE resources☆62Updated 3 years ago
- eBPF Map Prometheus Exporter☆26Updated 6 months ago
- An query language and interactive tooling to work with SBOM data.☆14Updated last year
- ☆16Updated 5 months ago
- Ran is an experimental offensive tool for Kubernetes clusters with the goal to enable quick emulation of adversary techniques and a colle…☆29Updated this week
- A tool to render a pie chart of memory usage (bytes_memlock) of BPF maps on the system 🥧☆21Updated last year
- agent for handling seccomp descriptors for container runtimes☆47Updated 2 years ago
- K8s Network Policy Migrator is a tool to migrate Calico or Cilium custom network policies to Kubernetes native network policy. The tool o…☆32Updated 2 years ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- ☆44Updated 8 months ago
- Administrative tooling for Falco☆121Updated this week
- Scans SBOMs for vulnerabilities with Grype☆85Updated this week
- eBPF based sector level disk replication tool for disaster recovery purpose☆33Updated 2 months ago