More information is better? Known exploit detection in the Linux kernel https://lkml.org/lkml/2013/12/12/358 …
@lazytyped well, if a fixed kernel was silent about those probes, it could have value. I'm kind of on the fence, though.
-
-
@kees_cook If it's a custom kernel you still have plenty of ways to gather information (date, version, changes gone in about the same time) -
@lazytyped yeah, vs distro kernels: less useful. vs custom kernels with unknown backport history: more useful. still on fence. -
@kees_cook fair enough (still IMHO enough info gathering is doable). But what is the ratio custom stuff/distro kernel out there? :) -
@lazytyped no actual clue, but I suspect CDNs outnumber everything else -
@kees_cook CDNs == ? (Sorry lack of English and acronyms on my side) -
@lazytyped Content Delivery Networks (e.g. Akamai, Amazon, etc) http://en.wikipedia.org/wiki/Content_delivery_network … -
@kees_cook Right :) Somehow I was stuck with trying to solve it with "Distro" :)
End of conversation
New conversation -
-
-
@kees_cook if it's a default (distro) kernel you know what will work (and can replicate locally) -- common caseThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.