A set of eBPF scripts and utilities intended for use in threat hunting and incident response.
I'm a big believer in the power of eBPF for security applications, but I feel that the technology is largely misunderstood and inaccessible. These scripts and associated explainers are an attempt to bridge that gap.
You will need bpftrace and BCC installed for the BPFTrace and Python tools to work.