
lockc
Making containers more secure with eBPF and Linux Security Modules (LSM)

Making containers more secure with eBPF and Linux Security Modules (LSM)

Automated System Hardening Framework

DShield Sensor Log Collection with ELK

A python package for use in generating fake data for SOC and security automation.

eBPF-based Linux security monitor and threat hunter providing chronologically ordered, container-aware events with on-host correlation for incident…

Lightweight, container-free sandbox for running commands with network and filesystem restrictions

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

the ps utility, with an eBPF twist and container context

A lightweight command sandbox for Linux, secure-by-default, built on Landlock.

Run Firefox in a rootless Podman container with dropped capabilities, isolated networking, and ephemeral storage to contain sandbox escapes and…

Experimental Decoy Broker

Easy to configure Honeypot for Blue Team

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Secure OCI container runtime that runs workloads inside lightweight VMs, providing strong isolation across Kubernetes, containerd, and CRI-O with…

MDE/MDI Defender setup for Ludus

ClamAV antivirus scanning for Node.js — scan file uploads with a single function call. Zero dependencies. Typed Symbol verdicts. Local or…

Linux Runtime Security and Forensics using eBPF