Lavender which is a distributed EDR (Endpoint Detection & Response) platform. A Rust/eBPF endpoint agent streams host telemetry over NATS JetStream to stateless Go detection services, with control-plane-driven detection rules and externalized correlation state. Built around real EDR correctness constraints: durable event delivery, sequence-aware correlation, and horizontally scalable detection.
Tech: Rust · eBPF · Go · NATS JetStream · Docker · stateless/distributed services
- Systems programming — eBPF, kernel tracepoints, endpoint telemetry, Rust at the edge
- Distributed systems — message transport, stateless services, correlation state, delivery guarantees
- Security / detection engineering — EDR, behavioral detection, MITRE ATT&CK mapping
Currently going deep on detection-platform architecture and the tradeoffs that come with it (ordering, consistency, durability under failure).
📫 Reach me: koiralaprashanta10@gmail.com


