Plugin
Arg | Description | Type |
---|---|---|
events | A list of event names to acquire. | list of string (required) |
include_env | Include process environment variables. | bool |
Watch for events from eBPF.
This plugin uses the integrated tracee eBPF engine to stream events.
See https://github.com/Velocidex/tracee_velociraptor for more details.