Open-source eBPF-based tool for detecting kernel rootkit behaviors including module loading, hiding, hooking, and C2 communication 1 talk featuring this tool from 1 chapters.