Pitfalls of relying on eBPF for security monitoring (and some solutions)

By Artem Dinaburg eBPF (extended Berkeley Packet Filter) has emerged as the de facto Linux standard for security monitoring and endpoint observability. It is used by technologies such as BPFTrace, Cilium, Pixie, Sysdig, and Falco due to its low overhead and its versatility. There is, however, a dark (but open) secret: eBPF was never intended […]

September 25, 2023
Read More >>

Hack The Box: Snoopy Machine Walkthrough – Hard Difficulty

In this post, I would like to share a walkthrough of the Snoopy Machine from Hack the Box This room will be considered a Hard machine on Hack the Box What will you gain from the Snoopy machine? For the user flag, you will need to retrieve the file such as /etc/passwd and named.conf by using […]

The post Hack The Box: Snoopy Machine Walkthrough – Hard Difficulty appeared first on Threatninja.net.

September 23, 2023
Read More >>