
nixos-config
Lan Tian's NixOS Configuration

Lan Tian's NixOS Configuration

Microsoft Sentinel SIEM Log Source Analyzer

Enforce security and compliance on Kubernetes clusters via admission controls, resource mutation, background scans, and container image signature…

Immutable Linux OS image optimized for running Incus containers and virtual machines, with UEFI Secure Boot, TPM 2.0 disk encryption, and automated…

Sandboxes containers via a userspace application kernel that intercepts system calls, limits host kernel access, and integrates with…

eBPF-powered Linux observability with AI incident detection. AGPL-3.0 licensed.

Branchable computing by using a portable, lightweight, self-contained virtual machine

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

Transforms SAM templates into CloudFormation resources, generating Lambda functions, IAM roles, and policies with built-in serverless best practices.

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

Validation of best practices in your Kubernetes clusters

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

Community-driven knowledge base for pentesting cloud environments and CI/CD pipelines: attack techniques, enumeration, privilege escalation, and…

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software