Learning how to write ebpf
kprobe
's in Rust with aya-rs
that can work with Unix Domain Sockets.
This is a pseudo-re-implementing of undump.bt
from bpftrace
- Install bpf-linker:
cargo install bpf-linker
cargo xtask build-ebpf
To perform a release build you can use the --release
flag.
You may also change the target architecture with the --target
flag.
cargo build
cargo xtask build
RUST_LOG=info cargo xtask run