Show HN: Kprotect – eBPF-based file protection using process lineage
github.comΒ·3dΒ·
Discuss: Hacker News
🦭Podman
Preview
Report Post

πŸ›‘οΈ kprotect

Overview

kprotect is a kernel-level security engine designed to protect your sensitive data from supply-chain attacks (like malicious Python or Node.js libraries). It stands as an independent security layer for the most sensitive files.

  • eBPF-LSM Protection: Intercepts file access at the kernel level based on path patterns and wildcards (e.g., *.env, home/user/.ssh/*).

  • Chain of Trust: Instead of trusting just a binary, kprotect validates the process lineage.

  • βœ… VS Code β†’ Terminal β†’ cat (If you authorized this chain)

  • ❌ VS Code β†’ Terminal β†’ python unsafe.py β†’ cat (This cannot read your file because the chain is invalid)

  • Testing Ready: Includes a robust system daemon, a power-user CLI, and a modern desktop GUI. All…

Similar Posts

Loading similar posts...

Keyboard Shortcuts

Navigation
Next / previous item
j/k
Open post
oorEnter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help