{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"SEC.co Podcast ","title":"eBPF: Giving Linux Detection Engineers Kernel-Level Superpowers","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/9c52c9a1\"></iframe>","width":"100%","height":180,"duration":629,"description":"eBPF lets Linux detection engineers attach sandboxed programs directly to kernel hook points — capturing process, file, and network activity with near-zero overhead and no bloated agents. This episode breaks down how to design, build, and operate a production-grade eBPF sensor.","thumbnail_url":"https://img.transistorcdn.com/94otH4rq7SFZtErk5NCuiEdgF8-OLF9klyDfctmwG7k/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS81NTQw/ZWNiODZiYzgyOWUz/ODQ1MmZiNWU4OWJl/ZjIzNy5wbmc.webp","thumbnail_width":300,"thumbnail_height":300}