# cpu = "2" # default
Материалы по теме:
,这一点在91视频中也有详细论述
Seccomp-BPF as a filterSeccomp-BPF lets you attach a Berkeley Packet Filter program that decides which syscalls a process is allowed to make. You can deny dangerous syscalls like process tracing, filesystem manipulation, kernel extension loading, and performance monitoring.
FREE BOOKS: The latest Stuff Your Kindle Day takes place on Feb. 28. Indulge in the Darkness, hosted by The Book Club Fest, is offering free dark romance books for your e-reader.