Jessie Frazelle
Bane is a tool to create AppArmor profiles. This helps to secure applications by setting restrictions on resources they access or modify. A strict policy may help to prevent privilege escalation attacks.

How it works

Bane works by running a Docker container while bane monitors it. Any required permissions will then be stored in the profile.

Usage and audience

bane is commonly used for application security, security monitoring, or system hardening. Target users for this tool are security professionals and system administrators.


  • Command line interface
  • Docker support

Example usage and output

Usage: bane <command>


-d enable debug logging (default: false)
-profile-dir directory for saving the profiles (default: /etc/apparmor.d/containers)


version Show the version information.

Tool review and remarks

The review and analysis of this project resulted in the following remarks for this security tool:


  • + More than 500 GitHub stars
  • + The source code of this software is available

Author and Maintainers

Bane is under development by Jessie Frazelle.


Supported operating systems

Bane is known to work on FreeBSD, Linux, Microsoft Windows, Solaris, and macOS.

