Interactive eBPF

(ebpf.party)

165 points | by samuel246 10 hours ago

4 comments

  • deivid 7 hours ago
    Thanks for sharing my site!

    I've been thinking about building a platform like this for a while, and it was quite fun to build.

    Let me know if you have questions or ideas for new exercises.

    • 0x4a50 6 hours ago
      Thanks for making this, looking forward trying it out!
    • self_awareness 6 hours ago
      This is really cool.

      Are you planning to add "lessons" related to deployment? For example, using libbcc vs CO-RE?

      • deivid 5 hours ago
        I wanted to add all kind of exercises, but I'm not sure what's a good way of presenting a deployment exercise.

        On libbcc specifically, I'm not sure it's worth it, CO-RE / BTF is where things are heading, and any reasonably new kernel supports it (<5 years old)

  • natas 57 minutes ago
    @deivid I would certainly buy a pdf or book with this and more examples (with full source code).

    Just a hint if you want to change the world and make a few bucks :)

  • mattrighetti 6 hours ago
    Nice, always wanted to get my hands on eBPF and this looks like a good way to try it out. Thanks!
  • flipped 3 hours ago
    For all it's innovative way of kernel programming, isn't eBPF a huge attack surface? Even a paradise for rootkit devs, perfectly able to hide using eBPF features.