{"repo":"bombinisecurity/bombini","free":true,"listed":false,"github":"https://github.com/bombinisecurity/bombini","clone":"git clone https://github.com/bombinisecurity/bombini.git","description":"eBPF Security Monitoring and Sandboxing Agent Based on Aya","language":"Rust","stars":54,"topics":["aya","bpf","ebpf","security","kernel","runtime-security","k8s","kubernetes","lsm","observability"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"Bombini: eBPF-based Security Monitoring and Sandboxing Agent ![License][license-badge] [![CI][ci-badge]][ci-url] [![Book][book-badge]][book-url] [license-badge]: https://img.shields.io/badge/license-Apache--2.0-0078D4?style=for-the-badge [ci-badge]: https://img.shields.io/github/actions/workflow/status/bombinisecurity/bombini/ci.yaml?branch=main&style=for-the-badge [ci-url]: https://github.com/bombinisecurity/bombini/actions/workflows/ci.yaml [book-badge]: https://img.shields.io/badge/read%20the-book-9cf.svg?style=for-the-badge&logo=mdbook [book-url]: https://bombinisecurity.github.io/bombini/ Bombini is an eBPF-based security agent written entirely in Rust using the Aya library and built on LSM (Linux Security Module) BPF hooks. At its core, Bombini employs modular components called Detectors, each responsible for monitoring and reporting specific types of system events. Getting Started Please, check the compatibility issues first. The most convenient way now is to pull Bombini image: Run You can easily run Bombini with this command: By default Bombini sends event to stdout in JSON format and starts only ProcMon detector intercepting process execs and exits. To customize your Bombini setup, please, follow the configuration guide and mount config directory to the container: Build To build Bombini from source, please, follow build guide. Contributing Please, check out CONTRIBUTING.md for the contributing guideline.","default_branch":null,"files":null,"tree":[],"storefront":"/r/bombinisecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/bombinisecurity/bombini/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}