Linuxadvanced1 min read

eBPF

N/A

eBPF

eBPF · N/A · eBPF · ee-bee-pee-ef · extended BPF · kernel eBPF · Linux · kernel · observability · securityLinuxextended BPF kernel eBPF

/ee-bee-pee-ef/

Also known as: extended BPF, kernel eBPF

Last updated August 9, 2026

Definition

eBPF lets programs run safely in the Linux kernel for observability, networking, and security monitoring without loading traditional kernel modules.

Real-World Example

Security agents using eBPF to watch process execution with lower overhead than older hooks.

References

discuss://translation · public

Translation discussion

Anyone can read and write here. Pick a display name — no email or account. Please keep the thread constructive. Thumb up a rendering you agree with — that helps the editor see consensus; it does not publish the term by itself. You can edit or delete your own comments from this browser; another device or cleared site data cannot.

Community lists who wrote, on which term, and when.

Loading discussion…