thought-machine / falco-probesLinks
Automated build and mirror of eBPF kernel probes for use as a driver with the Falco runtime security agent (https://falco.org/)
☆15Updated 9 months ago
Alternatives and similar repositories for falco-probes
Users that are interested in falco-probes are comparing it to the libraries listed below
Sorting:
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆105Updated last year
- OCI hook to trace syscalls and generate a seccomp profile☆332Updated last week
- A process level network security monitoring and enforcement project for Kubernetes, using eBPF☆44Updated 5 years ago
- ☆36Updated 4 years ago
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆132Updated 6 months ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆107Updated 3 months ago
- A tool to render a pie chart of memory usage (bytes_memlock) of BPF maps on the system 🥧☆20Updated last year
- Process-based Confidential Container Runtime☆84Updated 4 months ago
- Kit for building Falco drivers: kernel modules or eBPF probes☆66Updated last week
- ptrace-based event producer for udig☆67Updated 3 years ago
- A tool for in-depth analysis of container checkpoints☆120Updated this week
- ☆24Updated 4 years ago
- Intent driven security automation framework☆25Updated 3 weeks ago
- Falco plugins registry☆104Updated this week
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- Utilities for Cilium networking performance evaluation☆59Updated 4 years ago
- Runtime detection and response for malicious events in Kubernetes workloads☆46Updated last year
- eBPF tool for logging process ancestry of outbound TCP connections☆44Updated 3 months ago
- Find your favorite eBee☆74Updated 4 months ago
- Kubernetes audit logging, when you don't control the control plane☆85Updated this week
- ☆81Updated 3 years ago
- Curated list of SPIFFE and SPIRE resources☆58Updated 3 years ago
- Operator to deploy confidential containers runtime☆147Updated last week
- Ebpf faqs, samples, tooling☆45Updated 4 years ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆150Updated 3 years ago
- sigstore the hard way!☆117Updated 3 weeks ago
- SysFlow edge processing pipeline☆16Updated 7 months ago
- Enabling Kubernetes to make pod placement decisions with platform intelligence.☆176Updated 7 months ago
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- sget is a keyless safe script retrieval and execution tool☆18Updated 3 years ago