dotSecurity 2016 - Theo de Raadt - Privilege Separation and Pledge

Поделиться
HTML-код
  • Опубликовано: 11 сен 2024

Комментарии • 13

  • @saifikhan5755
    @saifikhan5755 8 лет назад +15

    Theo de Raadt is sharp as ever.

  • @oliverford5367
    @oliverford5367 7 лет назад +9

    Clever idea, wish I'd thought of it first! Theo is known for not suffering fools gladly but he's clearly a great security innovator.

  • @pasdenom.9062
    @pasdenom.9062 7 лет назад +10

    As always, simple solution to a complex problem... brilliant!

  • @jonathanpeele42
    @jonathanpeele42 5 лет назад +1

    At the kernel level they have KARL which makes the kernel layout random, with a similar purpose to KASLR. unveil(2) has also been introduced to isolate parts of the filesystem, complementing pledge(2).

  • @abraham4124
    @abraham4124 3 года назад

    This man is a pure angle

    • @lkrmpotic
      @lkrmpotic 11 месяцев назад

      90°!

    • @deini
      @deini 13 дней назад +1

      ​@@lkrmpotic He's 360, because he read the comment, turned 360 degrees and walked away

  • @RodCornholio
    @RodCornholio 7 лет назад +1

    Cool. Useful.

  • @RodCornholio
    @RodCornholio 7 лет назад +3

    Nice fail-safe mechanism.

  • @wyleong4326
    @wyleong4326 10 месяцев назад +1

    Sounds a lot like Holochain’s “DNA concept” with in-built immune response that fences off bad actors. Theo is as always, ahead of his time.

  • @igrewold
    @igrewold 6 лет назад

    .sec :)
    cool, thanks a lot, Mr. Theo.