aa-ebpf 0.0.1-alpha.9

eBPF-based kernel-level monitoring hooks for Agent Assembly
1
2
3
4
//! Kprobe handler for `sys_write`.
//!
//! Intercepts file write operations to detect unauthorized modifications
//! to configuration files or audit logs.