Instant, instantly trustable mitigation without upgrading/patching until impact is understood feels like an important ingredient.
-
-
Replying to @RichFelker @info_dox and
Long ago I would mitigate every ptrace vuln with a LKM to kill the syscall table entry until I evaluated new kernel.
1 reply 0 retweets 1 like
Replying to @RichFelker @info_dox and
Likewise for other syscalls, LKMs that hooked to validate inputs before passing on to real implementation.
2:15 PM - 14 Sep 2017
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.