Kernel: Falco and EasyOS
-
Threat-Detection Tool Falco Now Supports Multiple Event Sources, Syscall Selection, and More
As mentioned, the Kernel Crawler is a new tool that automatically searches for new kernel versions supported for a number of Linux distros. It should make it easier to adopt Falco by simplifying the task of installing kernel modules and eBPF probes for a given kernel version. The Kernel Crawler is used to populate and maintain a database with the build matrix which lists all kernel versions and distros supported by Falco.
-
Linux kernel 5.15.76 compiled
The 5.15.74 kernel was compiled on October 18, with Android drivers:
https://bkhome.org/news/202210/kernel-51574-compiled-with-android-drivers.html
I have compiled 5.15.76 with these changes, shown in bold text. Firstly, for the RTC: