1 talk mention this tool across 1 BSides chapters.
Linux port of Sysmon that uses eBPF programs to collect kernel events and logs them to syslog, replacing the Windows driver functionality