3 ms·
So many misconceptions in the same answer. eBPF is for observability, and letting you run privileged programs inside the kernel space (even with protections) ca
by dbolgheroni 3y ago
So many misconceptions in the same answer. eBPF is for observability, and letting you run privileged programs inside the kernel space (even with protections) can actually increase the potential attack surface. Containerization is not and was never a security measure.
- harporoeder 3y agoeBPF is used for substantially more than observability.