How to hide your actions when every step is being monitored
Ivan Gavrilov
AppSec Engineer, Innostage
Modern security tools are increasingly relying on eBPF technology to monitor events on hosts. Its capabilities seem to enable security teams to see everything and prevent the slightest compromise attempt in a timely manner. Or not?
In his report, Ivan will consider the strengths and weaknesses of the eBPF technology for security tasks as well as the possible methods to hide your actions using the example of existing eBPF‑based security tools