
keyhog
Open-source secret scanner in Rust

Open-source secret scanner in Rust

eBPF-powered runtime security sensor for CI/CD pipelines. Detects supply-chain attacks, logs process ancestry and file access, and provides forensic…

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (LSM-BPF,…

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Jailer is an eBPF-based process jailing system that provides mandatory access control (MAC) for Linux. It tracks processes using BPF task_storage…

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Policy engine and EDR for AI agent fleets and developer workstations. Monitors tool calls, file access, network flows, and process execution with…

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Network monitoring tool that maps process-to-network connections, identifies cloud providers, and detects beaconing activity




An AWS IAM policy statement parser and query tool.