
psc
the ps utility, with an eBPF twist and container context

the ps utility, with an eBPF twist and container context

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.

Secure OCI container runtime that runs workloads inside lightweight VMs, providing strong isolation across Kubernetes, containerd, and CRI-O with…

Snyk CLI scans and monitors your projects for security vulnerabilities.

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

eBPF-powered Kubernetes monitoring and performance testing platform that automatically generates service maps, tracks real-time metrics, and runs…

AWSGoat : A Damn Vulnerable AWS Infrastructure

An open source real-time network topology and protocols analyzer

Immutable Linux OS image optimized for running Incus containers and virtual machines, with UEFI Secure Boot, TPM 2.0 disk encryption, and automated…

Getting a handle on container security

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Cloud-native Kubernetes cluster inspection tool that detects application misconfigurations, unhealthy components, and node problems using custom OPA,…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Like Envoy xDS, but for eBPF filters

OWASP Kubernetes security and compliance tool [WIP]

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

simply nodes and graphs

Firecracker made simple. Spin up secure microVMs in milliseconds, from install to interactive shell in one command.