tracee Alternatives

tracee is described as 'Detect suspicious behaviors at runtime using eBPF tracing and research-driven behavioral signatures' and is an app in the security & privacy category. There are more than 10 alternatives to tracee for a variety of platforms, including Linux, Mac, Windows, SaaS and Web-based apps. The best tracee alternative is CrowdStrike Falcon. It's not free, so if you're looking for a free alternative, you could try Qtap or Sysdig Falco. Other great apps like tracee are Symantec Endpoint Protection, ESET PROTECT Advanced, Check Point Endpoint Security and Palo Alto Networks Prisma Cloud.

Copy a direct link to this comment to your clipboard
tracee alternatives page was last updated

Alternatives list

  1. CrowdStrike Falcon Host integrates seamlessly into your current environment, enabling your security team to effectively and efficiently detect and block adversary activity – ultimately preventing damage to your organization through SaaS-based next-generation endpoint protection.

    59 CrowdStrike Falcon alternatives

    Cost / License

    • Paid
    • Proprietary

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
     
  2. Multilayered endpoint protection solution featuring advanced threat defense, full disk encryption, cloud sandbox analysis, cross-platform support, cloud or on-premises management, real-time threat prevention, centralized control, and improved data security compliance.

    Cost / License

    • Paid
    • Proprietary

    Application type

    Platforms

    • Online
    • Software as a Service (SaaS)
     
  3. Check Point is a leader in network security software, firewall solutions, VPN solutions, endpoint security, network protection, security management, data protection and Pointsec data encryption technologies.

    15 Check Point Endpoint Security alternatives

    Cost / License

    • Paid
    • Proprietary

    Application type

    Platforms

    • Windows
     
  4. Qtap icon
     Like

    An eBPF agent that captures pre-encrypted network traffic, providing rich context about egress connections and their originating processes.

    Cost / License

    Platforms

    • Linux
    • Docker
     
  5. Falco is the first runtime security project to join CNCF as an incubation-level project. Falco acts as a security camera detecting unexpected behavior, intrusions, and data theft in real time.

    Cost / License

    Platforms

    • Linux
     
  6. The AURORA Agent is a lightweight and customisable endpoint agent based on Sigma. It uses Event Tracing for Windows (ETW) to recreate events that are very similar to the events generated by Microsoft’s Sysmon and applies Sigma rules and IOCs to them.

    Cost / License

    • Freemium
    • Proprietary

    Platforms

    • Software as a Service (SaaS)
    • Online
     
  7. Qpoint icon
     Like

    See through encryption to map dependencies, identify sensitive data sharing, and enforce egress controls.

    Cost / License

    • Freemium
    • Proprietary

    Platforms

    • Linux
    • Docker
    • Kubernetes
    • Self-Hosted
     
  8. NeuVector icon
     Like

    NeuVector Full Lifecycle Container Security Platform delivers the only cloud-native security with end-to-end protection from DevOps vulnerability protection to automated run-time security, and featuring a true Layer 7 container firewall.

    Cost / License

    Platforms

    • Linux
    • Self-Hosted
     
  9. vet icon
     Like

    vet is a tool for protecting against open source software supply chain attacks. To adapt to organizational needs, it uses an opinionated policy expressed as Common Expressions Language and extensive package security metadata including:

    Cost / License

    Platforms

    • Mac
    • Linux
    • Homebrew
     
11 of 11 tracee alternatives