tarsal-oss / kflowd
Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG Application Messages via eBPF Subsystem
☆62Updated last week
Alternatives and similar repositories for kflowd:
Users that are interested in kflowd are comparing it to the libraries listed below
- ☆86Updated 9 months ago
- Use eBPF to inject chaos into local processes☆64Updated 7 months ago
- Kubernetes offensive framework built in eBPF☆37Updated 2 years ago
- Red Canary's eBPF Sensor☆103Updated 9 months ago
- A toy containers aware firewall built in Rust☆23Updated 2 years ago
- 🐝 Ransomware Detection using Machine Learning with eBPF for Linux.☆59Updated 4 months ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆147Updated 3 years ago
- Simple root privilege escalation detection using eBPF 🐝☆12Updated 2 months ago
- proof-of-concept example of using eBPF to Monitor for eBPF Map tampering☆21Updated 3 years ago
- Elastic's eBPF☆68Updated 2 weeks ago
- eBPF-Direct is a high-performance serverless execution layer that runs functions directly inside the Linux kernel using eBP☆21Updated 3 weeks ago
- An EBPF based IPv4/IPv6 firewall with integrations for OpenZiti Zero-Trust Framework edge-routers and tunnellers☆52Updated last week
- ☆70Updated 2 months ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 3 years ago
- Multihost eBPF Map Sync Setup☆10Updated 4 months ago
- Publications from the eBPF foundation☆23Updated 5 months ago
- Ingress node firewall implements Kubernetes operator to provision stateless ingress node level firewall rules, stateless ingress node fir…☆54Updated this week
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated this week
- ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits☆129Updated 2 years ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆38Updated last year
- VED-eBPF: Kernel Exploit and Rootkit Detection using eBPF☆156Updated 7 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated last year
- eBPF Programs☆60Updated last week
- monitor and protect SSH sessions with eBPF☆68Updated 3 years ago
- ☆63Updated 2 years ago
- Intent driven security automation framework☆25Updated last week
- Linux Kernel Runtime Integrity with eBPF☆174Updated last year
- eBPF Memory Dump Tool☆64Updated last month
- A collection of bypasses and exploits for eBPF-based cloud security.☆21Updated last year
- egrets monitors egress☆45Updated 5 years ago