Every couple weeks someone realizes how sudo & groups work, then they mount the host file system into a container
https://github.com/chrisfosterelli/dockerrootplease/blob/master/README.md …
Replying to @jessfraz
This is a general class of design bug: root-equivalent permissions that falsely appear fine-grained. See CAP_* for most *.
3:41 AM - 12 Mar 2017
0 replies
0 retweets
2 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.