Skip to content

Conversation

@ekt0-syn
Copy link

Detect running processes that inserted BPF filters in the Linux server

Example: https://www.trendmicro.com/en_us/research/23/g/detecting-bpfdoor-backdoor-variants-abusing-bpf-filters.html

tclahr and others added 2 commits August 13, 2025 08:39
Merge pull request tclahr#396 from tclahr/release/3.2.0
Detect running processes that inserted BPF filters in the Linux server
@ekt0-syn ekt0-syn changed the base branch from main to develop August 21, 2025 13:30
@tclahr tclahr merged commit 785a6d5 into tclahr:develop Oct 6, 2025
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants