Still on my way back from #defcon! Thx to allow me to present https://t.co/fCfOBVr33M and to talk about how it is possible to check quickly a mobile phone for compromission, and to see amazing hackers. Such a great and unique conference!
Cc @bertolis24
Just released Island 🏝️, a sandboxing tool powered by #Landlock.
It auto‑confines processes according to the caller's context (e.g. CWD) and comes with slick Zsh integration, so you can use your terminal naturally without command prefixes.
https://t.co/MH7jKUxo43
I just published the fifth #Landlock newsletter! 🤓
- new kernel features: IPC scoping and audit logs
- kernel fixes
- library and talk updates
- new doc
- new open source Landlock users
- RHEL support
https://t.co/2GKurcxefm
Landrun: Run any Linux process in a secure, unprivileged sandbox using Landlock. Think firejail, but lightweight, user-friendly, and baked into the kernel.
https://t.co/MX25yYKfaV
.@volatility#PluginContest#Contender
Sylvain Peyrefitte: ScringsScan + VadScringsScan provide syntax-aware scanning for 6 languages in kernel memory in Linux, macOS & Windows + in-process VADs in Windows, improving in-memory script payloads searching.
#DFIR#memoryforensics
Starting with Linux 6.14, we'll be able to securely control script execution thanks to new syscall flags, successors of O_MAYEXEC. This is crucial for code integrity.
The next step is to enlighten script interpreters. Let me know if you want to help!
https://t.co/DtsWXTjUYn
Silicon Fucking Valley - Excellente série documentaire en 6 épisodes, incursion ludique et riche en anecdotes dans la Silicon Valley, avec Luc Julia (créateur de Siri) comme guide principal #Video#Tech https://t.co/QKXfW9wlbp
I'll give a talk at #FOSDEM: #Sandbox IDs with #Landlock
We'll talk about the challenges to identify sandboxed processes in a safe and unprivileged way, and how that could be used to identify #containers.
https://t.co/wIBHUlJdGI
#FOSDEM2025#container
#Landlock now has a logo! I'm at #OSSummit Europe, #LinuxSecuritySummit Europe, and #LinuxPlumbers this week in Vienna. If you're there, Günther, Tahera and I have some stickers to give 🤓
https://t.co/GJz0fPdmxm
This summer, our research work on attack paths discovery in Windows environments was presented at USENIX WOOT Conference @wootsecurity during a demo session by our PhD student Manuel https://t.co/ubPmD3JYO6
Still 12 days and I will switch to a new job, new life ;) Expect to release many open source projects related to security (memory, forensics) like I did a decade ago 🤟
@IAmDougLewis @CrowdStrike Happened to us: https://t.co/6Z0ePULaBy Almost guarantee exact same set of root causes. We learned. We fixed. They will too. (And, PS, we’re not perfect and we’ve almost certainly made a mistake we don’t yet know about that’ll bite us in the ass someday in the future.)