
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>Chaos and Order</title>
      <link>https://www.youngju.dev/blog</link>
      <description>천천히 올바르게. AI Researcher &amp; DevOps Engineer Youngju&#39;s tech blog. GPU/CUDA, LLM, MLOps, Kubernetes AI workloads, distributed training, and data engineering.</description>
      <language>ko</language>
      <managingEditor>fjvbn2003@gmail.com (Youngju Kim)</managingEditor>
      <webMaster>fjvbn2003@gmail.com (Youngju Kim)</webMaster>
      <lastBuildDate>Sat, 13 Jun 2026 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://www.youngju.dev/tags/lsm/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-06-13-ebpf-security-tetragon-falco-lsm.en</guid>
    <title>eBPF Runtime Security — Tetragon, Falco, and BPF LSM</title>
    <link>https://www.youngju.dev/blog/linux/2026-06-13-ebpf-security-tetragon-falco-lsm.en</link>
    <description>Why runtime security is essential in the era of supply chain attacks and container escapes, and how eBPF answers the call. Covers Falco rule writing, kernel-level blocking with Tetragon TracingPolicy, the principles of BPF LSM, a layered comparison with seccomp and AppArmor, and operational know-how.</description>
    <pubDate>Sat, 13 Jun 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>ebpf</category><category>security</category><category>falco</category><category>tetragon</category><category>kubernetes</category><category>lsm</category><category>runtime-security</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-06-13-ebpf-security-tetragon-falco-lsm.ja</guid>
    <title>eBPFランタイムセキュリティ — Tetragon、Falco、そしてBPF LSM</title>
    <link>https://www.youngju.dev/blog/linux/2026-06-13-ebpf-security-tetragon-falco-lsm.ja</link>
    <description>コンテナエスケープとサプライチェーン攻撃の時代に、なぜランタイムセキュリティが必須なのか、そしてeBPFがどう答えになるのかを整理します。Falcoのルール作成、Tetragon TracingPolicyによるブロック、BPF LSMの原理、seccomp/AppArmorとのレイヤ比較、運用ノウハウを扱います。</description>
    <pubDate>Sat, 13 Jun 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>ebpf</category><category>security</category><category>falco</category><category>tetragon</category><category>kubernetes</category><category>lsm</category><category>runtime-security</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-06-13-ebpf-security-tetragon-falco-lsm</guid>
    <title>eBPF 런타임 보안 — Tetragon, Falco, 그리고 BPF LSM</title>
    <link>https://www.youngju.dev/blog/linux/2026-06-13-ebpf-security-tetragon-falco-lsm</link>
    <description>컨테이너 이스케이프와 공급망 공격 시대에 런타임 보안이 왜 필수인지, 그리고 eBPF가 어떻게 답이 되는지 정리합니다. Falco 룰 작성, Tetragon TracingPolicy로 차단까지, BPF LSM의 원리, seccomp/AppArmor와의 계층 비교, 운영 노하우를 다룹니다.</description>
    <pubDate>Sat, 13 Jun 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>ebpf</category><category>security</category><category>falco</category><category>tetragon</category><category>kubernetes</category><category>lsm</category><category>runtime-security</category>
  </item>

    </channel>
  </rss>
