tarsal-oss / kflowd
Kernel-based Process Monitoring on Linux Endpoints for File System, TCP and UDP Networking Events and optionally DNS, HTTP and SYSLOG Application Messages via eBPF Subsystem
☆62Updated last month
Alternatives and similar repositories for kflowd:
Users that are interested in kflowd are comparing it to the libraries listed below
- Use eBPF to inject chaos into local processes☆64Updated 7 months ago
- ☆88Updated 10 months ago
- Red Canary's eBPF Sensor☆105Updated 10 months ago
- Kubernetes offensive framework built in eBPF☆37Updated 2 years ago
- Elastic's eBPF☆68Updated last month
- A toy containers aware firewall built in Rust☆23Updated 2 years ago
- Publications from the eBPF foundation☆23Updated 5 months ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated last week
- monitor and protect SSH sessions with eBPF☆68Updated 3 years ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆147Updated 3 years ago
- An EBPF based IPv4/IPv6 firewall with integrations for OpenZiti Zero-Trust Framework edge-routers and tunnellers☆53Updated this week
- eBPF-Direct is a high-performance serverless execution layer that runs functions directly inside the Linux kernel using eBPF☆24Updated last month
- ☆72Updated this week
- proof-of-concept example of using eBPF to Monitor for eBPF Map tampering☆21Updated 4 years ago
- Demo repository for running eBPF in GitHub Actions☆17Updated last month
- 🐝 Ransomware Detection using Machine Learning with eBPF for Linux.☆61Updated 5 months ago
- ☆11Updated 3 months ago
- egrets monitors egress☆45Updated 5 years ago
- Intent driven security automation framework☆25Updated last month
- Process behaviour anomaly detection using eBPF and unsupervised-learning Autoencoders☆131Updated 2 years ago
- Ingress node firewall implements Kubernetes operator to provision stateless ingress node level firewall rules, stateless ingress node fir…☆54Updated this week
- Inspect SSL/TLS traffic using eBPF☆19Updated 6 months ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 3 years ago
- TC, XDP, KProbe and CGroup eBPF based simple Ethernet interface traffic monitor and reporting tool☆98Updated last week
- A convenience tool to generate and store certificates for Hubble Relay mTLS☆26Updated this week
- Ebpf faqs, samples, tooling☆45Updated 3 years ago
- A collection of bypasses and exploits for eBPF-based cloud security.☆22Updated last year
- 🔍 Seccomp profiling and function-level tracing tool.☆154Updated 3 weeks ago
- ebpf compiler in Go; Write Go, get ebpf☆33Updated 6 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆38Updated last year