Containers, Security, and Echo Chambers
A critique of container security messaging, arguing that existing defaults like Seccomp and AppArmor provide robust, multi-layered sandboxing.
A critique of container security messaging, arguing that existing defaults like Seccomp and AppArmor provide robust, multi-layered sandboxing.
A developer explores using Linux's BINFMT_MISC to run scripts in any language via containers, building on a Cloudflare post about scripting in Go.
Explores two system objects, time and the kernel keyring, that are not isolated by Linux kernel namespaces, affecting container security.
Analysis of CVE-2016-10229, a serious Linux kernel vulnerability in MSG_PEEK, urging immediate updates for affected systems.
A technical guide detailing the challenges and solutions for running Linux on a Samsung Chronos 7 laptop, focusing on performance and heat management.
A developer reverse engineers the Logitech K750 keyboard's battery and light sensor to create Linux support, detailing the USB sniffing process.
A developer presents benchmark results showing ext4 filesystem scalability improvements on a 48-core system for an upcoming Linux kernel talk.
A technical deep dive into improving ext4 filesystem performance by optimizing the allocator to reduce e2fsck pass2 times.
Developer releases VARMon 1.2.1 after fixing a long-standing bug, marking the first new version in four years.
Developer contributes ATL1E NIC driver patch to Debian Linux kernel, then discovers his new work computer needs the same driver.
A technical overview of migrating Linux device drivers from kernel 2.4 to 2.6, focusing on API changes and device node registration.
A developer reflects on becoming a Linux kernel geek, noticing a shift in daily habits towards kernel-specific news and mailing lists.
A technical guide on compiling a single Linux kernel module without building the entire kernel tree, using specific Makefile commands.
A developer's update on teaching a Linux kernel class, organizing IETF work, and planning the Linux Kernel Summit while attending a conference.