Repository navigation
ebpf-go
- Website
- Wikipedia
Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.
Process-aware, eBPF-based tcpdump
texporter is a lightweight, high-performance eBPF-based network traffic exporter for Prometheus.
eBPF program that counts TCP, UDP and ICMP egress packets (includes source and destination IPs (pods, nodes, external), ports, protocol and TCP flags or ICMP Echo types)
What's going on down there? Kernel sniffing using eBPF.
Experiment with BPF_MAP_TYPE_HASH_OF_MAPS
A Enhanced observability and security solution to fully prevent DNS exfiltration (C2, tunnelling) with no data loss using XDP, TC, Netfilter, BPF_MAPs. Ring Buffers, Running eBPF inside linux kernel and Deep Learning in user space and threat events streaming for dynamic blacklisting of malicious domains.