mrtc0 / bouhekiLinks
bouheki is KRSI(eBPF+LSM) based Linux security auditing tool.
☆92Updated 3 months ago
Alternatives and similar repositories for bouheki
Users that are interested in bouheki are comparing it to the libraries listed below
Sorting:
- Kubernetes CTF☆43Updated 3 months ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆151Updated 3 years ago
- This tool set can generate SECCOMP profiles for Docker images. It mainly relies on static analysis, making its results more reliable than…☆70Updated 3 years ago
- RPM DB bindings for go☆70Updated 7 months ago
- Linux Kernel Runtime Integrity with eBPF☆184Updated 2 years ago
- An eBPF program debugger☆215Updated 3 years ago
- Sys::Ebpf is a pure-perl library to read, modify and load eBPF programs and attach them to various hooks in the Linux kernel.In other wor…☆33Updated last year
- ☆154Updated last week
- Trace deep kernel events through eBPF and lsm hooks☆42Updated 4 years ago
- Zero trust proxy for using in corporate☆72Updated last week
- A file system events notifier based on eBPF☆73Updated last month
- eBPF - extended Berkeley Packet Filter tooling☆132Updated 3 years ago
- xdperf is a high-performance network traffic generation tool that leverages XDP (eXpress Data Path).☆61Updated last week
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆136Updated 11 months ago
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆44Updated 5 years ago
- BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.☆59Updated 3 years ago
- Trivy based vulnerability management service☆56Updated this week
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆105Updated last year
- silence negligible CVE alerts using LLM☆64Updated last month
- trivy-db-to is a tool for migrating/converting vulnerability information from Trivy DB to other datasource.☆28Updated last week
- LSM BPF module to block pwnkit (CVE-2021-4034) like exploits☆21Updated 3 years ago
- Example BPF program with LSM hooks☆34Updated 4 years ago
- An eBPF playground☆210Updated 2 years ago
- A packet oriented Linux kernel function call tracer☆408Updated last year
- Protect GitHub Actions with Tracee☆81Updated 11 months ago
- [Deplicated] Now we have more sophisticated (and compact) implementation in ipftrace2 repository. Please check it as well.☆58Updated 5 years ago
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆139Updated 2 years ago
- Harness for the Linux kernel eBPF verifier☆34Updated 3 years ago
- ☆470Updated 2 months ago
- ☆89Updated last month