[$] Kernel runtime security instrumentation
Finding ways to make it easier and faster to mitigate an ongoing attackagainst a Linux system at runtime is part of the motivation behind thekernel runtime security instrumentation (KRSI) project. Its developer, KPSingh, gave a presentation about the project at the 2019LinuxSecurity Summit North America (LSS-NA), which was held in late Augustin San Diego. A prototype of KRSI is implemented as a Linux securitymodule (LSM) that allows eBPF programs to be attached to the kernel'ssecurity hooks.