Runtime Security skills
Free agent skills tagged runtime security, ready to install into any SKILL.md-compatible agent.
8 skills
Detecting Container Escape Attempts
mukul975
Monitor and detect container escape attempts effectively.
Detecting Container Escape with Falco Rules
mukul975
Monitor Linux syscalls to detect container escape attempts in real time.
Detecting Container Drift
mukul975
Monitor and secure your containers against unauthorized changes.
eBPF Security Monitoring
mukul975
Implement real-time security monitoring with eBPF.
DOCA Argus Service
nvidia
Streamline runtime security on BlueField systems.
Cloud Workload Protection
mukul975
Enhance your cloud security with runtime monitoring.
Implementing Runtime Security with Tetragon
Implement eBPF-based runtime security observability and enforcement in Kubernetes clusters using Cilium Tetragon, monitoring process execution, file access, network connections, and syscalls at the kernel level. Use when deploying Tetragon to detect or block dangerous syscalls (ptrace, mount, unshare), enforce kernel-level Kubernetes security policy, or add low-overhead runtime threat detection to a cluster.
Detecting Container Threats with Falco
Write and deploy Falco rules with the modern eBPF driver to detect container escape, namespace abuse, privileged mounts, and anomalous syscalls at runtime in Kubernetes and Docker.
