https://github.com/osquery/osquery logo
#ebpf
Title
z

zwass

05/24/2022, 6:07 AM
Seeing this (https://doublepulsar.com/bpfdoor-an-active-chinese-global-surveillance-tool-54b078f1a896?gi=82b009d3a9dd) makes me wonder if anyone has thought about building a
bpf_programs
table to list the loaded bpf programs? In any case, very clever use of BPF!
💯 2