willfindlay / bpfcontain-rsView external linksLinks
BPFContain is a container security daemon for GNU/Linux leveraging the power and safety of eBPF and Rust.
☆59Jun 30, 2022Updated 3 years ago
Alternatives and similar repositories for bpfcontain-rs
Users that are interested in bpfcontain-rs are comparing it to the libraries listed below
Sorting:
- 🐝 BPFBox 📦 Exploring process confinement in eBPF☆105Jan 11, 2024Updated 2 years ago
- Various eBPF programs for tracing network connections☆32Oct 26, 2021Updated 4 years ago
- ebpH (Extended BPF Process Homeostasis) monitors process behavior on your system to establish normal behavioral patterns. ebpH reports an…☆42Dec 8, 2022Updated 3 years ago
- This is the repository for the code and artifacts related to the CCS2022 paper: C2C: Fine-grained Configuration-driven System Call Filter…☆11Nov 4, 2022Updated 3 years ago
- ☆11Feb 22, 2016Updated 9 years ago
- Fork from git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git (unstable and force pushed!)☆22Jun 15, 2023Updated 2 years ago
- eBPF Steering Committee (BSC)☆14Dec 2, 2025Updated 2 months ago
- Working examples of KRSI (via BCC scripts).☆15Dec 21, 2020Updated 5 years ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Jan 22, 2022Updated 4 years ago
- bpflock - eBPF driven security for locking and auditing Linux machines☆151Feb 16, 2022Updated 3 years ago
- Making containers more secure with eBPF and Linux Security Modules (LSM)☆232Jun 2, 2024Updated last year
- This tool set can generate SECCOMP profiles for Docker images. It mainly relies on static analysis, making its results more reliable than…☆70May 3, 2022Updated 3 years ago
- Example BPF program with LSM hooks☆35Feb 24, 2021Updated 4 years ago
- Trace deep kernel events through eBPF and lsm hooks☆42Feb 9, 2021Updated 5 years ago
- UTrace is a tracing utility that leverages eBPF to trace both user space and kernel space functions☆50Jan 18, 2022Updated 4 years ago
- ☆11Aug 28, 2024Updated last year
- This project process eBPF events into Prometheus metrics via a Go user-space application. A Grafana dashboard is included to visualize Ke…☆14Apr 22, 2025Updated 9 months ago
- Linux Kernel Runtime Integrity with eBPF☆184Nov 23, 2023Updated 2 years ago
- CO-RE code for the Netdata eBPF plugin.☆16Feb 6, 2026Updated last week
- Dataset from Linux Raspian VMs and devices with auditd logs capturing various container escape and attacks.☆15Jul 30, 2022Updated 3 years ago
- A command line tool to automatically generate seccomp profiles.☆27Apr 29, 2021Updated 4 years ago
- ☆26Jun 5, 2025Updated 8 months ago
- ☆17Mar 22, 2019Updated 6 years ago
- Diagrams to visually learn Falco and its eBPF probe☆15Jun 24, 2021Updated 4 years ago
- bouheki is KRSI(eBPF+LSM) based Linux security auditing tool.☆92Sep 21, 2025Updated 4 months ago
- ☆38Feb 15, 2022Updated 3 years ago
- suidsnoop is a tool based on eBPF LSM programs that logs whenever a suid binary is executed and implements custom allow/deny lists.☆16Oct 31, 2021Updated 4 years ago
- Elastic's eBPF☆73Jan 27, 2026Updated 2 weeks ago
- ☆15Apr 28, 2023Updated 2 years ago
- k8tls (pronounced cattles), to assess server port security by detecting its TLS and certificates configuration.☆20Jan 27, 2026Updated 2 weeks ago
- eBPF developer tutorials to build CO-RE libbpf tools:generated by chatGPT and teach chatGPT to write eBPF programs! ( eBPF 工具开发实践教程: 通过例…☆17Oct 12, 2024Updated last year
- 实现一个基于eBPF技术监控容器行为的工具☆16May 9, 2025Updated 9 months ago
- Analysis of syscall sequence pattern from exploit codes for advanced system call sequence filtering for enhanced container security☆16May 21, 2023Updated 2 years ago
- Source-code based coverage for eBPF programs actually running in the Linux kernel☆137Feb 6, 2025Updated last year
- Ebpf faqs, samples, tooling☆45Jul 1, 2021Updated 4 years ago
- OCI hook to trace syscalls and generate a seccomp profile☆337Feb 4, 2026Updated last week
- ☆25Jun 2, 2024Updated last year
- ☆18Sep 4, 2023Updated 2 years ago
- GoBPFLD is a pure go eBPF loader/userspace library☆20Feb 5, 2022Updated 4 years ago