The Berkeley Packet Filter (BPF) is a network tap and packet filter which permits packets to be captured and filtered at the operating system layer.
https://en.wikipedia.org/wiki/Berkeley_Packet_Filter
BPF
0001-01-01
The Berkeley Packet Filter (BPF) is a network tap and packet filter which permits packets to be captured and filtered at the operating system layer.
https://en.wikipedia.org/wiki/Berkeley_Packet_Filter
Linux Persistence: Startup Scripts
2024-11-10 DFIR CTF linux persistence systemd SysV init startup script
Linux Persistence: Cron
2024-11-10 DFIR CTF linux persistence cron
Linux Persistence: User Accounts
2021-06-27 DFIR linux persistence