Results 51 to 60 of about 1,010 (196)
fProcessor: NonIntrusive and On-the-Fly File Data Preprocessing Using eBPF
This paper introduces fProcessor, a tool designed for nonintrusive, on-the-fly preprocessing of data being written to files. “Nonintrusive” means that fProcessor requires no modifications to existing code, allowing applications to remain ...
Peng Wang +5 more
doaj +1 more source
eBPF-Based Runtime Detection of Semantic DDoS Attacks in Linux Containers
Modern Distributed Denial-of-Service (DDoS)attacks increasingly target the application layer to exhaust CPU resources and disrupt service availability, particularly in containerized environments where isolation and diverse implementations complicate ...
S. Remya +7 more
doaj +1 more source
INTELLIGENT ANOMALY DETECTION IN CONTAINERIZED APPLICATIONS: METHODS, ARCHITECTURE AND TOOLS
Modern information systems, whether deployed on-premises or in public clouds, are increasingly implemented using Docker containers orchestrated by Kubernetes.
Bogdan O. Lavrov, Mikhail A. Ivanov
doaj +1 more source
An Abnormal File Access Detection Model for Containers Based on eBPF Listening
With the widespread adoption of container technology, its shared kernel architecture has made abnormal file access behavior a key precursor to container escape and lateral attacks, necessitating precise and efficient runtime detection mechanisms. However,
Naqin Zhou +4 more
doaj +1 more source
Secure Deployment of eBPF Programs Made Manifest
eBPF allows for dynamic kernel customization at runtimewith low overhead and fine-grained control over system operations. In recent years, its usage has increased in domainswhere performance is critical, including network management, system observability,
Pulls, Tobias +2 more
core +1 more source
Service Function Chaining Architecture for Multi-Hop Split Inference
Service Function Chaining (SFC) ensures traffic follows a predefined sequence of service functions, enabling dynamic and efficient network services. Inspired by this, we propose an SFC-based architecture for Multi-hop Split Inference (MSI), where split ...
Takanori Hara, Masahiro Sasabe
doaj +1 more source
An Autonomous GreenOps Architecture for Real-Time Software Energy Measurement and Carbon-Aware Routing [PDF]
The escalating proliferation of software (AI solutions in particular) has triggered a real increase in global energy consumption, and urges nowadays a deep reflection on how to direct digital innovations to meet climate commitments.
Azizi Mostafa, Aziz Abdelhak, Azizi Omar
doaj +1 more source
Deep Packet Inspection (DPI) is central to Network Intrusion Detection Systems (NIDS), but existing solutions trade inspection depth for throughput. Snort and Suricata provide rich rule semantics but incur kernel-to-user copies; eBPF filters are fast but
Kiran P. Das +3 more
doaj +1 more source
ESX: A Self-Generated Control Policy for Remote Access With SSH Based on eBPF
Cloud systems that provide remote data and computational access through networks face significant security challenges. Secure Shell (SSH) is one of the most popular methods for remote access, but the leakage of login information presents a substantial ...
Yuan Zhong, Pengfei Chen, Huxing Zhang
doaj +1 more source
With the evolution of cloud-native microservice architectures traditional sidecar-based monitoring patterns and fragmented security tools have introduced significant resource overhead and management complexity. Current research indicates that the sidecar
Heng Ran, Chuanping Hu, Yan Zhuang
doaj +1 more source

