YoVDO

Detection and Blocking with BPF via YAML

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses YAML Courses BPF (Berkeley Packet Filter) Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the power of BPF (Berkeley Packet Filter) for detection and blocking through YAML configuration in this 47-minute conference talk from 44CON Information Security Conference. Learn how to leverage OSS Tetragon, a mature open-source BPF engine, to monitor and block actions without writing any BPF code. Discover techniques for hooking kernel functions, blocking actions, and killing processes using simple YAML configurations. Gain insights into sending events to logs, email, SMS, and Slack channels for comprehensive monitoring. Presented by Kev Sheldrake, a seasoned security software developer and researcher, this talk offers practical knowledge for implementing advanced security measures using BPF and YAML.

Syllabus

Kev Sheldrake - Detection and Blocking with BPF via YAML


Taught by

44CON Information Security Conference

Related Courses

Simple Hardware Side Channel Attacks
44CON Information Security Conference via YouTube
Ways to Brick Your Hardware
44CON Information Security Conference via YouTube
2012 In Review - Tor and the Censorship Arms Race
44CON Information Security Conference via YouTube
The Infosec Crossroads
44CON Information Security Conference via YouTube
A Talk About Info-Sec Talks
44CON Information Security Conference via YouTube