Show newer

"If you're buying Magnets, particularly the high-grade magnets more reliant on Heavy Rare Earths, there's a good chance some amount of material has come from Myanmar"

globalwitness.org/en/campaigns

"A group of hackers was able to take control of a decommissioned Satellite and use it to stream a hacking conference’s talks and hacker movies" (DEF CON)

vice.com/en/article/y3pwqx/hac

"In this series, we will explore leveraging glibc to exploit a vulnerable program on a x86 64-bit CPU"

control.rip/posts/2022/08/16/l

@Lup Yuen Lee 李立源

These new container images significantly improve security posture:

Ultra-small images (reduced size and attack surface)No package manager (avoids a whole class of attacks)No shell (avoids a whole class of attacks)Non-root (avoids a whole class of attacks)



I wonder how not using a package manager makes it more secure, would you be able to pinpoint that? Is there any kind of security check to verify ?

To me it looks a bit like AppImages on Linux (or snaps, and somewhat to flatpacks). AppImages simply take the source and see git as "it is secure"

Running it in a container does not mean one should run unsafe software imho

"A youth told seven friends that he had made profits from trading Cryptocurrency, convincing them to invest about S$ 332,000 through him" (Singapore)

channelnewsasia.com/singapore/

Show older
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.