snyk / leaky-vessels-static-detector
Static detection tool for runc and Docker "Leaky Vessels" vulnerabilities
☆94Updated 5 months ago
Alternatives and similar repositories for leaky-vessels-static-detector:
Users that are interested in leaky-vessels-static-detector are comparing it to the libraries listed below
- Leaky Vessels Dynamic Detector☆101Updated 7 months ago
- Runtime detection and response for malicious events in Kubernetes workloads☆41Updated 10 months ago
- ☆25Updated 8 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆36Updated 10 months ago
- Kubernetes (k8s) admission controller webhook based on Casbin☆35Updated last year
- Intent driven security automation framework☆25Updated this week
- ☆74Updated last month
- Advent of code in eBPF☆47Updated last year
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆71Updated last year
- Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG App…☆56Updated this week
- in-toto is a framework to secure the software supply chain.☆70Updated 3 weeks ago
- ☆18Updated last month
- Response Engine for managing threats in your Kubernetes☆147Updated this week
- Falco plugins registry☆87Updated this week
- ☆92Updated 8 months ago
- Operator providing Kubernetes cluster compliance checks☆42Updated this week
- A convenience tool to generate and store certificates for Hubble Relay mTLS☆22Updated last week
- Security advisory data for Wolfi☆13Updated this week
- ☆27Updated last week
- PoC and Detection for CVE-2024-21626☆72Updated 11 months ago
- A Kubernetes Job to collect resources, logs and events☆25Updated 2 months ago
- ☆19Updated 4 months ago
- agent for handling seccomp descriptors for container runtimes☆44Updated 11 months ago
- AI-generated remediations for Falco audit events☆69Updated last year
- Compare data from multiple vulnerability scanners to get a more complete picture of potential exposures.☆61Updated last year
- Visualize Kubernetes & DevSecOps Workflows. Tracks changes/events real-time across your entire K8s clusters, git repos, container registr…☆40Updated 7 months ago
- Trivy's misconfiguration scanning engine☆218Updated last week
- Vanir is a source code-based static analysis tool that automatically identifies the list of missing security patches in the target system…☆308Updated last month
- A tool for in-depth analysis of container checkpoints☆104Updated last month
- A basic website that shows the timeline of Kubernetes Core APIs☆26Updated 2 weeks ago