← back

category

Container runtime security

Detect and block suspicious behaviour in running containers and Kubernetes workloads.

Side by side

Container runtime security
ToolStarsLicenceTermsSelf-hostedLanguageLatestLast push
Falco9.5kApache-2.0Open sourceYesC++0.45.02026-10-05
Tetragon5.1kApache-2.0Open sourceYesCv1.7.12026-10-06
Tracee4.6kApache-2.0Open sourceYesGov0.24.12026-10-01
KubeArmor2.6kApache-2.0Open sourceYesGov1.7.6-rc52026-10-06
NeuVector1.3kApache-2.0Open sourceYesGov5.6.22026-10-06

5 tools

Tetragon

eBPF-based Security Observability and Runtime Enforcement

Language
C
Licence
Apache-2.0
Stars
5.1k
Latest
v1.7.1
Last push
2026-10-06
KubeArmor

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (LSM-BPF, AppArmor).

Language
Go
Licence
Apache-2.0
Stars
2.6k
Latest
v1.7.6-rc5
Last push
2026-10-06

What these tools replace