tarsal-oss / kflowdLinks
Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG Application Messages via eBPF Subsystem
☆70Updated 9 months ago
Alternatives and similar repositories for kflowd
Users that are interested in kflowd are comparing it to the libraries listed below
Sorting:
- 🐝 Ransomware Detection using Machine Learning with eBPF for Linux.☆73Updated last year
- ☆90Updated last month
- monitor and protect SSH sessions with eBPF☆72Updated 4 years ago
- Use eBPF to inject chaos into local processes☆67Updated last year
- An EBPF based IPv4/IPv6 firewall with integrations for OpenZiti Zero-Trust Framework edge-routers and tunnellers☆75Updated 5 months ago
- 🔍 Function-level tracing tool for Seccomp profiling, with eBPF☆176Updated 2 months ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆69Updated last week
- bpflock - eBPF driven security for locking and auditing Linux machines☆151Updated 3 years ago
- eBPF Programs☆65Updated 6 months ago
- A toy containers aware firewall built in Rust☆23Updated 3 years ago
- ☆86Updated last week
- Simple root privilege escalation detection using eBPF 🐝☆35Updated 3 months ago
- Red Canary's eBPF Sensor☆113Updated 7 months ago
- Real-time eBPF-powered network security monitor with AI-driven threat detection. Surfaces port scans, DDoS attacks, botnet activity, and …☆63Updated last month
- Measure UDP and TCP connection latency for IPv4 and IPv6 using eBPF and Go☆76Updated last week
- VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities☆104Updated last year
- Process behaviour anomaly detection using eBPF and unsupervised-learning Autoencoders☆137Updated 3 years ago
- Demo repository for running eBPF in GitHub Actions☆23Updated 9 months ago
- Elastic's eBPF☆73Updated 3 months ago
- Deep Linux runtime visibility meets Wireshark☆300Updated 2 months ago
- TC, XDP, KProbe and CGroup eBPF based simple Ethernet interface traffic monitor and reporting tool☆129Updated last month
- Publications from the eBPF foundation☆28Updated last month
- L3AFD eBPF Programs control plane☆205Updated last week
- Generate a variety of suspect actions that are detected by Falco rulesets☆114Updated 7 months ago
- ☆24Updated 5 years ago
- Making containers more secure with eBPF and Linux Security Modules (LSM)☆233Updated last year
- Inspect SSL/TLS traffic using eBPF☆20Updated last year
- Intent driven security automation framework☆26Updated 5 months ago
- Falco rule repository☆151Updated 2 weeks ago
- MCP server: using eBPF to tracing your kernel☆64Updated 5 months ago