A Kubernetes tool leveraging eBPF for advanced Kubernetes security, auto-generating Network Policies, Seccomp Profiles, and more. - kguardian-dev/kguardian

2 points•mrayas•about 21 hours ago•1 comment•
At the place where I work, we use the runtime’s default seccomp profile. My colleague and I wanted to see which syscalls our pods actually make, so we decided to capture and audit them and then generate a workload-specific list of syscalls.

We ended up building a feature in our security tool that does exactly that.

Blog post: https://dev.to/maheshrayas/part-2-the-seccomp-profile-nobody...

1 comment

michaelfornaroabout 20 hours ago
Using eBPF in Kubernetes is a brilliant way to improve security posture!

Read the full thread on Hacker News →

Related stories