willfindlay / suidsnoopView on GitHub
suidsnoop is a tool based on eBPF LSM programs that logs whenever a suid binary is executed and implements custom allow/deny lists.
16Oct 31, 2021Updated 4 years ago

Alternatives and similar repositories for suidsnoop

Users that are interested in suidsnoop are comparing it to the libraries listed below

Sorting:

Are these results useful?