Skip to main content
G

Garnet

Garnet Labs provides runtime security monitoring for cloud infrastructure, detecting and preventing threats in real-time. Their SaaS platform helps organizations identify and mitigate vulnerabilities, ensuring the security and integrity of their applications and systems.

Founded 20217500+ followers
Updated 16 months ago

Funding

$8.5M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.

Funding rounds are not available yet.

Founders

Product

Problem

Modern CI/CD pipelines and Kubernetes environments are vulnerable to sophisticated runtime threats, including supply chain attacks, credential theft, container escapes, and zero-day exploits, which often bypass static scanning and traditional security measures. The high-privilege environment of CI/CD runners and the complexity of Kubernetes clusters create opportunities for attackers to compromise systems and steal sensitive data.

Solution

Garnet Labs provides runtime security monitoring and enforcement for modern infrastructure, protecting build, test, and runtime environments against unknown threats and vulnerabilities. The platform leverages Jibril, a lightweight eBPF-powered sensor, to monitor process executions, memory access, and network connections at the kernel level, detecting and blocking malicious behaviors in real-time. Garnet offers centralized visibility, policy management, and workflow integrations, enabling organizations to identify and respond to incidents within existing tools like GitHub and Slack. By shifting the focus from "time to detect" to "time to block," Garnet helps security teams reduce SOC workload and maintain compliance.

Target Audience

Garnet Labs targets modern engineering teams, security experts, and engineering leaders who need to protect their CI/CD pipelines and Kubernetes environments from runtime threats.

Features

  • Real-time runtime monitoring for network, file, and process behaviors using Jibril sensor
  • eBPF-based architecture for minimal performance impact (30MB RAM, less than 2% CPU overhead)
  • Behavioral threat detection to identify suspicious activity, such as memory dumps and unauthorized network connections
  • Active protection to block malicious actions before they succeed
  • Supply chain monitoring to identify when third-party actions or dependencies attempt to access sensitive data or execute unexpected commands
  • Integration with GitHub Actions and Kubernetes for one-click deployment
  • Centralized visibility and policy management across multiple environments
  • Workflow integrations with GitHub PR, Slack, and SIEM tools
This profile is AI-generated and may contain inaccuracies.