An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: ebpf

falcosecurity/falco

Cloud Native Runtime Security

Language: C++ - Size: 20.5 MB - Last synced at: 17 minutes ago - Pushed at: 2 days ago - Stars: 8,221 - Forks: 940

tzussman/kmodleak

Track memory leaks for Linux kernel modules using eBPF

Language: C - Size: 1.94 MB - Last synced at: about 1 hour ago - Pushed at: about 3 hours ago - Stars: 44 - Forks: 1

cilium/cilium

eBPF-based Networking, Security, and Observability

Language: Go - Size: 414 MB - Last synced at: about 3 hours ago - Pushed at: about 5 hours ago - Stars: 22,365 - Forks: 3,387

stackroost/eclipta

Eclipta is a Rust-based, cross-platform eBPF Manager & Visualizer for Linux systems. It lets you trace, monitor, and analyze system calls, network activity, and kernel behavior in real-time โ€” through both a powerful CLI and a beautiful Web Dashboard. Built for DevOps engineers, SREs, and kernel enthusiasts, Eclipta makes deep observability effortle

Language: Rust - Size: 1.61 MB - Last synced at: about 7 hours ago - Pushed at: about 8 hours ago - Stars: 0 - Forks: 0

l3af-project/l3afd

L3AFD eBPF Programs control plane

Language: Go - Size: 15.2 MB - Last synced at: about 7 hours ago - Pushed at: about 9 hours ago - Stars: 203 - Forks: 41

netobserv/netobserv-ebpf-agent

Network Observability eBPF Agent

Language: C - Size: 41.3 MB - Last synced at: about 7 hours ago - Pushed at: about 9 hours ago - Stars: 182 - Forks: 47

bpfsnoop/bpfsnoop

Modernized kernel functions, kernel tracepoints and bpf progs tracing tool for the bpf era.

Language: Go - Size: 3.69 MB - Last synced at: about 9 hours ago - Pushed at: about 11 hours ago - Stars: 117 - Forks: 11

OpenCloudOS/perf-prof

Kernel profiler based on perf_event and ebpf

Language: C - Size: 14.8 MB - Last synced at: about 14 hours ago - Pushed at: about 15 hours ago - Stars: 100 - Forks: 21

kubescape/node-agent

Kubescape eBPF agent ๐Ÿฅท๐Ÿป

Language: C - Size: 79.2 MB - Last synced at: about 16 hours ago - Pushed at: about 17 hours ago - Stars: 16 - Forks: 6

apache/skywalking

APM, Application Performance Monitoring System

Language: Java - Size: 165 MB - Last synced at: 12 minutes ago - Pushed at: 3 days ago - Stars: 24,503 - Forks: 6,611

alibaba/loongcollector

Fast and Lightweight Observability Data Collector

Language: C++ - Size: 36.1 MB - Last synced at: about 2 hours ago - Pushed at: about 13 hours ago - Stars: 1,988 - Forks: 428

cilium/proxy

Envoy with Cilium filters

Language: C++ - Size: 27.1 MB - Last synced at: about 24 hours ago - Pushed at: 1 day ago - Stars: 164 - Forks: 68

zoidyzoidzoid/awesome-ebpf

A curated list of awesome projects related to eBPF.

Size: 214 KB - Last synced at: about 23 hours ago - Pushed at: about 1 month ago - Stars: 4,730 - Forks: 390

netobserv/network-observability-operator

An OpenShift / Kubernetes operator for network observability

Language: Go - Size: 42.3 MB - Last synced at: about 6 hours ago - Pushed at: about 8 hours ago - Stars: 196 - Forks: 39

bpftrace/bpftrace

High-level tracing language for Linux

Language: C++ - Size: 15.5 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 9,572 - Forks: 1,400

kubernetes-sigs/blixt

Layer 4 Kubernetes load-balancer

Language: Rust - Size: 1.44 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 453 - Forks: 64

k8sstormcenter/honeycluster

Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be used as a SOC

Language: Python - Size: 4.56 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 54 - Forks: 4

ntop/ntopng

Web-based Traffic and Security Network Traffic Monitoring

Language: Lua - Size: 395 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 7,107 - Forks: 709

parca-dev/parca

Continuous profiling for analysis of CPU and memory usage, down to the line number and throughout time. Saving infrastructure cost, improving performance, and increasing reliability.

Language: TypeScript - Size: 138 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 4,575 - Forks: 239

aquasecurity/btfhub

BTFhub, in collaboration with the BTFhub Archive repository, supplies BTF files for all published kernels that lack native support for embedded BTF. This joint effort ensures that even kernels without built-in BTF support can effectively leverage the benefits of eBPF programs, promoting compatibility across various kernel versions.

Language: Go - Size: 12.4 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 452 - Forks: 49

aliyun/surftrace

surftrace is a tool that allows you to surf the linux kernel

Language: Python - Size: 12 MB - Last synced at: 1 day ago - Pushed at: about 2 years ago - Stars: 330 - Forks: 50

seladb/PcapPlusPlus

PcapPlusPlus is a multiplatform C++ library for capturing, parsing and crafting of network packets. It is designed to be efficient, powerful and easy to use. It provides C++ wrappers for the most popular packet processing engines such as libpcap, Npcap, WinPcap, DPDK, AF_XDP and PF_RING.

Language: C++ - Size: 89.7 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 2,985 - Forks: 720

microsoft/retina

eBPF distributed networking observability tool for Kubernetes

Language: Go - Size: 31.3 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 3,031 - Forks: 252

aya-rs/aya

Aya is an eBPF library for the Rust programming language, built with a focus on developer experience and operability.

Language: Rust - Size: 8.23 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 3,869 - Forks: 341

CortexFlow/CortexBrain

CortexBrain is an ambitious open-source project created by CortexFlow, aiming to develop an intelligent, lightweight, and efficient service mesh architecture that seamlessly connects cloud and edge devices

Language: Rust - Size: 39.6 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 63 - Forks: 7

cloudflare/ebpf_exporter

Prometheus exporter for custom eBPF metrics

Language: Go - Size: 12.5 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 2,424 - Forks: 256

falcosecurity/libs

libsinsp, libscap, the kernel module driver, and the eBPF driver sources

Language: C - Size: 36.5 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 285 - Forks: 174

cilium/ebpf

ebpf-go is a pure-Go library to read, modify and load eBPF programs and attach them to various hooks in the Linux kernel.

Language: Go - Size: 46.8 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 7,090 - Forks: 768

eunomia-bpf/bpf-developer-tutorial

eBPF Developer Tutorial: Learning eBPF Step by Step with Examples

Language: C - Size: 25.4 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 3,525 - Forks: 490

coroot/coroot

Coroot is an open-source observability and APM tool with AI-powered Root Cause Analysis. It combines metrics, logs, traces, continuous profiling, and SLO-based alerting with predefined dashboards and inspections.

Language: Go - Size: 65 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 7,027 - Forks: 312

yandex/perforator

Perforator is a cluster-wide continuous profiling tool designed for large data centers

Language: C++ - Size: 191 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 3,236 - Forks: 145

inspektor-gadget/inspektor-gadget

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

Language: C - Size: 106 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 2,551 - Forks: 298

vbpf/prevail

eBPF verifier based on abstract interpretation

Language: C++ - Size: 5.63 MB - Last synced at: 2 days ago - Pushed at: 4 days ago - Stars: 425 - Forks: 47

coroot/coroot-node-agent

A Prometheus exporter based on eBPF that gathers comprehensive container metrics

Language: Go - Size: 34.4 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 378 - Forks: 77

open-telemetry/opentelemetry-ebpf-profiler

The production-scale datacenter profiler (C/C++, Go, Rust, Python, Java, NodeJS, .NET, PHP, Ruby, Perl, ...)

Language: Go - Size: 42.6 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 2,857 - Forks: 325

MatheuZSecurity/Rootkit

Collection of codes focused on Linux rootkits

Language: C - Size: 74.6 MB - Last synced at: 3 days ago - Pushed at: 21 days ago - Stars: 150 - Forks: 40

k8spacket/k8spacket

k8spacket - collects TCP traffic and TLS connection metadata in the Kubernetes cluster using eBPF and visualizes in Grafana

Language: Go - Size: 212 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 1,058 - Forks: 53

odigos-io/odigos

Distributed tracing without code changes. ๐Ÿš€ Instantly monitor any application using OpenTelemetry and eBPF

Language: Go - Size: 102 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 3,523 - Forks: 230

ddddddO/packemon

Packet monster (ใฃโ€˜-โ€™)โ•ฎ=อžอŸอŸอžโ—’ ใƒฝ( '-'ใƒฝ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (default: eth0). Windows/macOS/Linux

Language: Go - Size: 35.5 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 245 - Forks: 2

multikernel/kernelscript

KernelScript is a modern, type-safe, domain-specific programming language for eBPF-centric kernel customization

Language: OCaml - Size: 4.28 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 219 - Forks: 11

Esonhugh/sshd_backdoor

/root/.ssh/authorized_keys evil file watchdog with ebpf tracepoint hook.

Language: C - Size: 82 KB - Last synced at: 2 days ago - Pushed at: over 2 years ago - Stars: 340 - Forks: 37

cilium/hubble

Hubble - Network, Service & Security Observability for Kubernetes using eBPF

Language: Makefile - Size: 43.6 MB - Last synced at: 4 days ago - Pushed at: 14 days ago - Stars: 3,920 - Forks: 271

flomesh-io/fsm

Lightweight service mesh for Kubernetes East-West and North-South traffic management, uses ebpf for layer4 and pipy proxy for layer7 traffic management, support multi cluster network.

Language: Go - Size: 37.3 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 66 - Forks: 12

Synarcs/DNSObelisk

Advanced kernel-native security framework to disrupt and prevent DNS-based breaches including C2 channels and tunneling with zero data loss. Combines TC, Netfilter, raw socket interception, BPF maps, and ring buffers, runs entirely on eBPF in the Linux kernel. Integrates with deep learning for advanced intelligent EDR

Language: Go - Size: 1.82 GB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 30 - Forks: 1

projectcalico/calico

Cloud native networking and network security

Language: Go - Size: 205 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 6,741 - Forks: 1,472

qmonnet/rbpf

Rust virtual machine and JIT compiler for eBPF programs

Language: Rust - Size: 937 KB - Last synced at: 3 days ago - Pushed at: 3 months ago - Stars: 1,034 - Forks: 305

containerscrew/nflux

Simple network monitoring tool. Powered by eBPF & Rust ๐Ÿ

Language: Rust - Size: 6.27 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 5 - Forks: 1

NationalSecurityAgency/seabee

Hardens eBPF tools against privileged attackers via policy-based access controls

Language: Rust - Size: 1 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 39 - Forks: 6

eunomia-bpf/bpftime

Userspace eBPF runtime for Observability, Network, GPU & General Extensions Framework

Language: C++ - Size: 19.1 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 1,080 - Forks: 109

mk-fg/linux-ebpf-connection-overseer

Desktop network monitoring widget to display connections with process/cgroup info in an overlay window

Language: Nim - Size: 303 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 3 - Forks: 0

open-telemetry/opentelemetry-network

eBPF Collector

Language: C++ - Size: 13.4 MB - Last synced at: 2 days ago - Pushed at: 7 days ago - Stars: 375 - Forks: 61

Gui774ume/ebpfkit

ebpfkit is a rootkit powered by eBPF

Language: C - Size: 7.63 MB - Last synced at: 2 days ago - Pushed at: over 2 years ago - Stars: 808 - Forks: 94

Gthulhu/Gthulhu

Gthulhu optimizes cloud-native workloads using the Linux Scheduler Extension for different application scenarios.

Language: C - Size: 1.85 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 127 - Forks: 7

pixie-io/pixie

Instant Kubernetes-Native Application Observability

Language: C++ - Size: 115 MB - Last synced at: 5 days ago - Pushed at: 21 days ago - Stars: 6,146 - Forks: 471

aya-rs/awesome-aya

A curated list of awesome eBPF ๐Ÿ projects using aya-rs and Rust ๐Ÿฆ€

Size: 56.6 KB - Last synced at: 5 days ago - Pushed at: 3 months ago - Stars: 144 - Forks: 16

isovalent/cilium-up-and-running

This repository contains manifests, scripts, and configurations referenced in the O'Reilly book Cilium Up and Running. These resources are intended to help readers experiment with Cilium features, reproduce demonstrations, and deepen their understanding of Kubernetes networking, security, and observability.

Language: Shell - Size: 6.61 MB - Last synced at: 3 days ago - Pushed at: 6 days ago - Stars: 58 - Forks: 10

adgaultier/tamanoir

An eBPF๐Ÿ Keylogger with C2-based RCE payload delivery

Language: Rust - Size: 135 KB - Last synced at: 5 days ago - Pushed at: 4 months ago - Stars: 287 - Forks: 25

legionus/proc-bpf-controller

Language: C - Size: 2.93 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

astrid-project/cb-manager

APIs to interact with the Context Broker's database. Through a REST Interface, it exposes data and events stored in the internal storage system in a structured way. It provides uniform access to the capabilities of monitoring agents.

Language: Python - Size: 25.6 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 2 - Forks: 1

ebpf-io/ebpf.io-website

ebpf.io Website

Language: HTML - Size: 267 MB - Last synced at: 3 days ago - Pushed at: 8 days ago - Stars: 129 - Forks: 138

pythops/oryx

๐Ÿ•ต๏ธโ€โ™‚๏ธ TUI for sniffing network traffic using eBPF on Linux

Language: Rust - Size: 303 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 1,775 - Forks: 52

jschwinger233/skbdump

ebpf-based tcpdump

Language: C - Size: 5.94 MB - Last synced at: 4 days ago - Pushed at: 3 months ago - Stars: 93 - Forks: 7

cilium/tetragon

eBPF-based Security Observability and Runtime Enforcement

Language: C - Size: 77.3 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 4,128 - Forks: 450

ceems-dev/ceems

A Prometheus exporter and a REST API server to export metrics of compute units of resource managers like SLURM, Openstack, k8s, _etc_

Language: C - Size: 10.6 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 42 - Forks: 4

yairfalse/tapio

Different observability platform

Language: Go - Size: 383 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 1 - Forks: 0

ccfos/huatuo

HUATUO๏ผˆๅŽไฝ—๏ผ‰ๆ˜ฏ็”ฑๆปดๆปดๅผ€ๆบๅนถไพๆ‰˜ CCF ๅผ€ๆบๅ‘ๅฑ•ๆŠ€ๆœฏๅง”ๅ‘˜ไผšๅญตๅŒ–็š„ไบ‘ๅŽŸ็”Ÿๆ“ไฝœ็ณป็ปŸๅฏ่ง‚ๆต‹ๆ€ง้กน็›ฎ๏ผŒไธ“ๆณจไบŽไธบๅคๆ‚ไบ‘ๅŽŸ็”Ÿ็Žฏๅขƒๆไพ›ๆ“ไฝœ็ณป็ปŸๅ†…ๆ ธ็บงๆทฑๅบฆ่ง‚ๆต‹่ƒฝๅŠ›ใ€‚

Language: C - Size: 28.9 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 253 - Forks: 20

BRA1L0R/xdp-loader

Configurable XDP loader in Rust. Supports jump table dispatching and program pinning.

Language: Rust - Size: 60.5 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 1 - Forks: 0

inspektor-gadget/ig-mcp-server

Debug your Container and Kubernetes workloads with an AI interface

Language: Go - Size: 4.47 MB - Last synced at: about 19 hours ago - Pushed at: about 20 hours ago - Stars: 13 - Forks: 1

bpfman/bpfman

An eBPF Manager for Linux and Kubernetes

Language: Rust - Size: 52.6 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 671 - Forks: 67

libbpf/libbpf-rs

Minimal and opinionated eBPF tooling for the Rust ecosystem

Language: Rust - Size: 6.28 MB - Last synced at: 6 days ago - Pushed at: 8 days ago - Stars: 891 - Forks: 156

kxxt/tracexec

Tracer for execve{,at} and pre-exec behavior, launcher for debuggers.

Language: Rust - Size: 27.5 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 403 - Forks: 6

kunai-project/kunai

Threat-hunting tool for Linux

Language: Rust - Size: 1.21 MB - Last synced at: 6 days ago - Pushed at: 17 days ago - Stars: 967 - Forks: 70

kmesh-net/kmesh

High Performance ServiceMesh Data Plane Based on eBPF and Programmable Kernel

Language: Go - Size: 54.3 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 666 - Forks: 129

open-telemetry/opentelemetry-go-instrumentation

OpenTelemetry Auto Instrumentation using eBPF

Language: C - Size: 26.3 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 880 - Forks: 119

hengyoush/kyanos

Kyanos is a networking analysis tool using eBPF. It can visualize the time packets spend in the kernel, capture requests/responses, makes troubleshooting more efficient.

Language: C - Size: 38 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 4,760 - Forks: 210

cilium/cilium-cli

CLI to install, manage & troubleshoot Kubernetes clusters running Cilium

Language: Makefile - Size: 95.8 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 500 - Forks: 213

grafana/beyla

eBPF-based autoinstrumentation of web applications and network metrics

Language: Go - Size: 242 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 1,775 - Forks: 149

dynatrace-oss/koney

Koney is a Kubernetes operator that enables you to define so-called deception policies for your cluster. Koney automates the setup, rotation, and teardown of honeytokens and fake API endpoints, and uses eBPF to detect, log, and forward alerts when your traps have been accessed.

Language: Go - Size: 224 KB - Last synced at: 6 days ago - Pushed at: 14 days ago - Stars: 50 - Forks: 5

qpoint-io/qtap

Qtap: An eBPF agent that captures pre-encrypted network traffic, providing rich context about egress connections and their originating processes.

Language: C - Size: 3.72 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 1,274 - Forks: 36

hitsz-ids/duetector

duetector๐Ÿ”: Data Usage Extensible Detector for data usage observability.

Language: Python - Size: 1.98 MB - Last synced at: 5 days ago - Pushed at: 23 days ago - Stars: 11 - Forks: 7

Dream95/gotproxy

A simple transparent proxy for Linux

Language: C - Size: 1.9 MB - Last synced at: 7 days ago - Pushed at: 8 days ago - Stars: 2 - Forks: 0

eunomia-bpf/wasm-bpf

WebAssembly library, toolchain and runtime for eBPF programs

Language: Rust - Size: 9.66 MB - Last synced at: 2 days ago - Pushed at: about 1 year ago - Stars: 424 - Forks: 29

BelWue/flowpipeline

Process network flows using fully configurable pipelines.

Language: Go - Size: 918 KB - Last synced at: 3 days ago - Pushed at: 8 days ago - Stars: 25 - Forks: 9

cglabs-dev/core-dev

Public reference provider for the orchestrator (safe demo flows, mocks, test fixtures). Useful when private providers are not installed.

Size: 0 Bytes - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 0 - Forks: 0

cglabs-dev/core

Public orchestrator & API surface for CGLabs. Dynamically loads providers and stays out of the datapath (eBPF/TPROXY run in core providers).

Size: 0 Bytes - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 0 - Forks: 0

rhargreaves/knock-knock

Port knocking implementation in eBPF

Language: Python - Size: 903 KB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 8 - Forks: 1

iopsystems/rezolus

High-resolution, low-overhead systems telemetry

Language: Rust - Size: 5.43 MB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 236 - Forks: 15

aibor/exceed2go

ICMPv6 time exceeded packet generator

Language: C - Size: 1.24 MB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 4 - Forks: 0

kubesphere/kubesphere

The container platform tailored for Kubernetes multi-cloud, datacenter, and edge management โŽˆ ๐Ÿ–ฅ โ˜๏ธ

Language: Go - Size: 93.3 MB - Last synced at: 8 days ago - Pushed at: 20 days ago - Stars: 16,546 - Forks: 2,648

eunomia-bpf/eunomia-bpf

A Toolchain to make Build and Run eBPF programs easier

Language: Rust - Size: 15.6 MB - Last synced at: 7 days ago - Pushed at: about 2 months ago - Stars: 780 - Forks: 70

aquasecurity/libbpfgo

eBPF library for Go. Powered by libbpf.

Language: Go - Size: 960 KB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 812 - Forks: 101

dfrojas/yubarta

๐Ÿ‹ Yubarta is an auto-remediation platform written in Python that reacts to eBPF signals and external alerts with rule-based actions. With AI support on the roadmap to become a self-healing platform.

Language: Python - Size: 1.08 MB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 0 - Forks: 0

bombinisecurity/bombini

eBPF security monitoring agent based on Aya

Language: Rust - Size: 698 KB - Last synced at: 8 days ago - Pushed at: 9 days ago - Stars: 31 - Forks: 1

madhavan-21/kernalKoala

This project is a minimal eBPF-based Layer 4 (Transport Layer) network monitor that uses tc (Traffic Control) hooks to trace ingress and egress network traffic in real time.

Language: C - Size: 2.98 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 26 - Forks: 1

javierhonduco/lightswitch

CPU profiler as a library for Linux suitable for on-demand and continuous profiling running on BPF

Language: Rust - Size: 1.92 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 18 - Forks: 3

Santandersecurityresearch/CryptoMon

Network Cryptography Monitor - using eBPF, written in python

Language: Python - Size: 311 KB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 35 - Forks: 2

kubearmor/KubeArmor

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (LSM-BPF, AppArmor).

Language: Go - Size: 71.5 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 1,965 - Forks: 400

DualHorizon/blackpill ๐Ÿ“ฆ

A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs

Language: Rust - Size: 283 KB - Last synced at: 6 days ago - Pushed at: 2 months ago - Stars: 335 - Forks: 42

aquasecurity/tracee

Linux Runtime Security and Forensics using eBPF

Language: Go - Size: 180 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 4,024 - Forks: 456

cilium/hubble-ui

Observability & Troubleshooting for Kubernetes Services

Language: TypeScript - Size: 46.9 MB - Last synced at: 4 days ago - Pushed at: 9 days ago - Stars: 465 - Forks: 68