Главная
Study mode:
on
1
intro
2
preface
3
who is thomas
4
runtime security?
5
syscalls
6
falco what's that?
7
ebpf...
8
...the hooks
9
...the verification
10
falco's architecture
11
libscap aka library for system capture
12
libsinsp aka library for system inspection
13
falco: the rule engine
14
falco: the default ruleset
15
connect falco: falcosidekick
16
react to events
17
falcosidekick ui
18
the evolution: the plugins
19
falco's current architecture
20
demo
21
getting started
22
how to contribute
Description:
Discover how to enhance application security using Falco and eBPF in this informative conference talk from Conf42 Observability 2023. Explore runtime security concepts, syscalls, and the fundamentals of Falco and eBPF. Learn about Falco's architecture, including libscap and libsinsp libraries, the rule engine, and default ruleset. Understand how to connect Falco using Falcosidekick and react to events. Dive into the evolution of Falco plugins and witness a live demo. Gain insights on getting started with Falco and contributing to the project. Access additional resources, including the Falco documentation, GitHub repositories, and community channels for further learning and engagement.

Using Falco and eBPF to Protect Your Applications

Conf42
Add to list