Project Awesome project awesome

Security > Tracee

A runtime security and forensics tool for Linux which uses eBPF technology to trace the system and applications at runtime, and analyze collected events to detect suspicious behavioral patterns.

Package 4.4k stars GitHub
Back to eBPF