{"repo":"bytedance/Elkeid","free":true,"listed":false,"github":"https://github.com/bytedance/Elkeid","clone":"git clone https://github.com/bytedance/Elkeid.git","description":"Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It is derived from ByteDance's internal best practices.","language":"Go","stars":2670,"topics":["hids","security","rasp","edr","cwpp","linux-security"],"license":null,"category":"security-tools","readme_excerpt":"Elkeid - Bytedance Cloud Workload Protection Platform English 简体中文 Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless . It is derived from ByteDance's internal best practices. With the business development of enterprises, the situation of multi-cloud, cloud-native, and coexistence of multiple workloads has become more and more prominent. We hope that there can be a set of solutions that can meet the security requirements under different workloads, so Elkeid was born. Introduction Elkeid has the following key capabilities: Elkeid not only has the traditional HIDS (Host Intrusion Detection System) ability for host layer intrusion detection and malicious file identification, but also can well identify malicious behaviors in containers. The host can meet the anti-intrusion security requirements of the host and the container on it, and the powerful kernel-level data collection capability at the bottom of Elkeid can satisfy the desire of most security analyst for host-level data. For the running business Elkeid has the RASP capability and can be injected into the business process for anti-intrusion protection, not only the operation and maintenance personnel do not need to install another Agent, but also the business does not need to restart. For K8s itself, Elkeid supports collection to K8s Audit Log to perform intrusion detection and risk identification on the K8s system. Elkeid 's rule ","default_branch":null,"files":null,"tree":[],"storefront":"/r/bytedance","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/bytedance/Elkeid/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}