awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectServer MCPDespreCum realizăm clasamentulPresă
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

14 repository-uri

Awesome GitHub RepositoriesNetworking and Security

Tools for network management, traffic control, and security enforcement.

Explore 14 awesome GitHub repositories matching part of an awesome list · Networking and Security. Refine with filters or upvote what's useful.

Awesome Networking and Security GitHub Repositories

Găsește cele mai bune repo-uri cu AI.Vom căuta cele mai potrivite repository-uri folosind AI.
  • cilium/ciliumAvatar cilium

    cilium/cilium

    23,806Vezi pe GitHub↗

    Cilium is a networking, security, and observability platform for containerized environments that leverages kernel-level data paths to process traffic. By executing programs directly within the Linux kernel, it provides high-performance packet filtering, routing, and load balancing without the need for traditional user-space proxies or context switching. The platform distinguishes itself through identity-based security enforcement, which filters traffic based on service labels rather than volatile IP addresses. It integrates containerized workloads with external physical or virtual infrastruct

    Networking and security policy enforcement for containers.

    Gobpfcncfcni
    Vezi pe GitHub↗23,806
  • cilium/tetragonAvatar cilium

    cilium/tetragon

    4,753Vezi pe GitHub↗

    Tetragon este un set de instrumente pentru securitatea runtime și observabilitate bazat pe eBPF, conceput pentru medii Linux și Kubernetes. Acesta funcționează ca un manager de politici de securitate, agent de observabilitate și motor de impunere a regulilor, conectându-se la funcțiile kernel-ului și la tracepoint-uri pentru a detecta escaladarea privilegiilor, evadarea din containere și activitățile neautorizate ale sistemului. Proiectul se distinge prin capacitatea de a efectua impunerea regulilor în timp real, direct în kernel, permițând terminarea sincronă a proceselor malițioase sau modificarea valorilor returnate de funcții înainte ca un apel de sistem să se finalizeze. Oferă o integrare profundă cu Kubernetes prin sincronizarea identităților containerelor și maparea evenimentelor de nivel scăzut din kernel direct către pod-uri și namespace-uri. Capabilitățile sale mai largi acoperă auditarea completă a apelurilor de sistem, monitorizarea conexiunilor de rețea și verificarea integrității fișierelor. Sistemul suportă gestionarea dinamică a politicilor și oferă instrumente de diagnosticare pentru monitorizarea performanței BPF și a utilizării resurselor. Deployment-ul este suportat în clustere Kubernetes prin Helm charts, precum și prin containere standalone și pachete native pentru sistemele de operare.

    Kubernetes-aware runtime security and enforcement.

    C
    Vezi pe GitHub↗4,753
  • aquasecurity/traceeAvatar aquasecurity

    aquasecurity/tracee

    4,377Vezi pe GitHub↗

    Tracee is a cloud-native runtime security and forensics tool that uses eBPF to capture system calls and kernel events in real time. It operates as a standalone binary or a Helm-deployable agent for Kubernetes, normalizing system calls, network events, and container activities into a unified event pipeline for consistent analysis. The tool distinguishes itself through policy-driven event filtering using YAML-based rules, allowing users to target specific workloads and reduce noise during monitoring. It includes built-in threat detection signatures that flag suspicious behavioral patterns witho

    Runtime security and forensics tool for Linux.

    Gobpfdockerebpf
    Vezi pe GitHub↗4,377
  • sysinternals/sysmonforlinuxAvatar Sysinternals

    Sysinternals/SysmonForLinux

    2,113Vezi pe GitHub↗

    Sysmon for Linux

    Security monitoring tool for Linux systems.

    C
    Vezi pe GitHub↗2,113
  • liudf0716/apfree-wifidogAvatar liudf0716

    liudf0716/apfree-wifidog

    927Vezi pe GitHub↗

    apfree-wifidog is a high-performance captive portal solution that serves as a gateway between your wireless networks and the Internet. Optimized for both HTTP and HTTPS traffic, it ensures secure border control while enabling seamless user authentication and efficient network management. 技术交流QQ群 331230369

    High-performance captive portal solution for wireless networks.

    C
    Vezi pe GitHub↗927
  • merbridge/merbridgeAvatar merbridge

    merbridge/merbridge

    806Vezi pe GitHub↗

    Use eBPF to speed up your Service Mesh like crossing an Einstein-Rosen Bridge.

    eBPF-based traffic interception for service meshes.

    Go
    Vezi pe GitHub↗806
  • cybereason-public/owlsmAvatar Cybereason-Public

    Cybereason-Public/owLSM

    270Vezi pe GitHub↗

    Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities

    Stateful security monitoring using eBPF LSM.

    C
    Vezi pe GitHub↗270
  • alegrey91/harpoonAvatar alegrey91

    alegrey91/harpoon

    177Vezi pe GitHub↗

    🔍 Function-level tracing tool for Seccomp profiling, with eBPF

    Syscall tracing from user-space functions.

    C
    Vezi pe GitHub↗177
  • innerwarden/innerwardenAvatar InnerWarden

    InnerWarden/innerwarden

    158Vezi pe GitHub↗

    The security agent that fights back. Watches your Linux server from inside, detects threats with kernel-level eBPF, and stops them with on-device AI. Open-source, self-hosted, dry-run by default. Apache-2.0.

    Self-defending security agent for Linux and macOS.

    Rust
    Vezi pe GitHub↗158
  • linux-lock/bpflockAvatar linux-lock

    linux-lock/bpflock

    153Vezi pe GitHub↗

    bpflock - eBPF driven security for locking and auditing Linux machines

    Security tool for auditing and locking Linux machines.

    C
    Vezi pe GitHub↗153
  • gen0sec/synapseAvatar gen0sec

    gen0sec/synapse

    128Vezi pe GitHub↗

    Active NDR solution with eBPF-powered active fingerprint blocking, firewall and proxy. Protect your system -- east-west and north-south.

    XDR firewall and proxy for server protection.

    Rust
    Vezi pe GitHub↗128
  • redcanaryco/redcanary-ebpf-sensorAvatar redcanaryco

    redcanaryco/redcanary-ebpf-sensor

    115Vezi pe GitHub↗

    Red Canary's eBPF Sensor

    Security event data collection from the kernel.

    C
    Vezi pe GitHub↗115
  • gen0sec/bpfjailerAvatar gen0sec

    gen0sec/bpfjailer

    55Vezi pe GitHub↗

    Jailer is an eBPF-based process jailing system that provides mandatory access control (MAC) for Linux. It tracks processes using BPF task_storage maps and enforces role-based policies on file access, network operations, and process execution.

    Process jailing system for mandatory access control.

    C
    Vezi pe GitHub↗55
  • bombinisecurity/bombiniAvatar bombinisecurity

    bombinisecurity/bombini

    51Vezi pe GitHub↗

    eBPF Security Monitoring and Sandboxing Agent Based on Aya

    LSM-based security agent written in Rust.

    Rust
    Vezi pe GitHub↗51
  1. Home
  2. Part of an Awesome List
  3. DevOps & Infrastructure
  4. Networking and Security