This presentation introduces Pulsar, an advanced threat detection system meticulously crafted for IoT systems, specifically catering to embedded engineers. Powered by eBPF, a groundbreaking technology embedded in the Linux kernel, Pulsar achieves native performance while tracing system events in a secure and efficient manner.
The talk delves into the core aspects of Pulsar, elucidating its architecture, capabilities, and the unique flexibility it offers through its rules engine, allowing developers to craft security policies tailored to their specific use cases. Attendees will gain insights into practical applications through examples of rules and detections.
Additionally, the presentation explores the integration of Pulsar with the Yocto Project ecosystem, offering a holistic view of its compatibility and utility. The discussion concludes by outlining the future roadmap and anticipated developments for Pulsar, providing a comprehensive overview of its role in enhancing IoT security for embedded systems.