Alex is right, i promise you if it made sense to do seccomp-bpf like things for Windows we would have done it by now. Windows is a different beast entirely. Hyper-v/WDAG containers are the best way we currently have to abstract away attack kernel surface.https://twitter.com/aionescu/status/1092263015699730437 …
-
-
yeah i saw this its really cool
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Yeah this looks pretty good but I think the OS vendor needs to bake this kind of API in to the system so third party additions aren’t required for developing applications with decent security constraints
-
I’m with you 100%
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.