BigHugger
sk Skill · mukul975

implementing-ebpf-security-monitoring

Implements eBPF-based security monitoring using Cilium Tetragon for real-time process execution tracking, network connection observability, file access auditing, and runtime enforcement. Covers TracingPolicy CRD authoring with kprobe/tracepoint hooks, in-kernel filtering via matchArgs/matchBinaries selectors, JSON event export, and integration with SIEM pipelines. Use when building kernel-level runtime security…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
jsonPythonkubernetes-securitykernel-securitybashobservabilityruntime-securityciliumtetragonyamlebpf
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python