Poster: eBPF-Based Intrusion Prevention System for Database Servers
Ruturaj Ramchandra Shitole, Sai Kumar Nekkanti, Timothy Wood · 2024
eBPF (Extended Berkeley Packet Filter) is a powerful technology enabling the execution of sandboxed programs at the kernel level. This paper investigates its potential to implement security measures for critical database statements, safeguarding them from various threats. These threats can include malicious actors, compromised containers, or even insider attempts to tamper with production data.