finds.dev← search

// the find

mikeroyal/eBPF-Guide

★ 660 · Go · updated Jan 2024

eBPF (extended Berkeley Packet Filter) Guide. Learn all about the eBPF Tools and Libraries for Security, Monitoring , and Networking.

A link-list style guide to the eBPF ecosystem — tracing, networking, and security tools (Cilium, Falco, bpftrace, libbpf, Tracee, Hubble) alongside generic LLVM/Go/C++/Rust development-tool sections. Useful for someone doing a first landscape scan of what exists in eBPF tooling, not for someone who wants to write eBPF code.

The core eBPF tool list is accurate and still relevant — correct one-line descriptions of what Cilium, Falco, bpftrace, libbpf, Tracee, and Hubble actually do, not just marketing blurbs. It's a fast way to get an inventory of the ecosystem's major players in one page. The books/tutorials section points to legitimate sources (Brendan Gregg, Liz Rice) rather than random blog spam.

There's no actual eBPF code in the repo — despite 'Guide' in the name, the directory tree shows a README and a single stub .go file; it's a bookmark dump, not a hands-on tutorial. Roughly half the content (Go/C++/Rust/LLVM sections) has nothing to do with eBPF specifically — Gitea, Traefik, GORM, zap are generic language tooling that pad the list without adding eBPF-relevant signal. Descriptions read like they were copied near-verbatim from each linked project's own README, so there's no independent opinion on which of these tools you'd actually reach for. Last push was January 2024, so anything that's shipped or changed in the ecosystem since is missing, and status claims about listed projects may no longer hold.

View on GitHub →

// want more like this?

We dig through GitHub every week and send a few repos picked for what you actually care about — each with an honest take like this one.

Get finds in your inbox → Search again →