// the find
mikeroyal/eBPF-Guide
eBPF (extended Berkeley Packet Filter) Guide. Learn all about the eBPF Tools and Libraries for Security, Monitoring , and Networking.
A link-list style guide to the eBPF ecosystem — tracing, networking, and security tools (Cilium, Falco, bpftrace, libbpf, Tracee, Hubble) alongside generic LLVM/Go/C++/Rust development-tool sections. Useful for someone doing a first landscape scan of what exists in eBPF tooling, not for someone who wants to write eBPF code.
The core eBPF tool list is accurate and still relevant — correct one-line descriptions of what Cilium, Falco, bpftrace, libbpf, Tracee, and Hubble actually do, not just marketing blurbs. It's a fast way to get an inventory of the ecosystem's major players in one page. The books/tutorials section points to legitimate sources (Brendan Gregg, Liz Rice) rather than random blog spam.
There's no actual eBPF code in the repo — despite 'Guide' in the name, the directory tree shows a README and a single stub .go file; it's a bookmark dump, not a hands-on tutorial. Roughly half the content (Go/C++/Rust/LLVM sections) has nothing to do with eBPF specifically — Gitea, Traefik, GORM, zap are generic language tooling that pad the list without adding eBPF-relevant signal. Descriptions read like they were copied near-verbatim from each linked project's own README, so there's no independent opinion on which of these tools you'd actually reach for. Last push was January 2024, so anything that's shipped or changed in the ecosystem since is missing, and status claims about listed projects may no longer hold.