false-systems/syva
Kernel-level eBPF enforcement for existing Kubernetes clusters. 7 LSM hooks watch every open, exec, kill, ptrace, and cgroup move — no runtime replacement needed.
GitHub repository with 8 stars and 0 forks.
Language: Rust
Topics: bpf, container-security, containerd, containers, ebpf, isolation, kubernetes, linux-security, lsm, rust