OPPO Kernel Craftsman
Jan 8, 2021 · Operations
Understanding eBPF and Its Use on Android for System Call Counting
The article explains eBPF’s evolution from packet filtering to a C‑compiled, sandboxed kernel framework, describes its core concepts of bytecode, JIT, and maps, and walks through building, loading, and using an Android eBPF program that counts system calls per PID via tracepoint hooks.
AndroidLinux kernelPerformance monitoring
0 likes · 9 min read