Hacker News new | ask | show | jobs
by miravmehta 392 days ago
This is good. Why was this created in the first place? I am curious what problems does it solve additionally?
1 comments

   - technological advantage (ebpf + AI/LLM)
   - lightweight, uses very less resouces than other heavy/bloated solutions
   - seamless installation.
   - highly customizable and fast shipping compared to existing solutions like splunk, wazuh, sentinel one etc.
   - can create custom rules to raise alerts on any file, commands, uid, gid, port, ip etc.
   - XDR: automated response/blocking of malicious ip/port.