- cross-posted to:
- linux@lemmy.ml
- linux@lemmy.ml
- cross-posted to:
- linux@lemmy.ml
- linux@lemmy.ml
woaw
also a good blog post about it https://xint.io/blog/copy-fail-linux-distributions
woaw
also a good blog post about it https://xint.io/blog/copy-fail-linux-distributions
SELinux breaks a lot of android root exploits, way back in the day even dirty cow didn’t work. It would get you “root” but not actually the full perms because of SELinux. Really good testament to the added security of MAC, it’s one of the reasons I run apparmor on my systems
I’ll be happy if I never have to look at SELinux or fapolicy ever again. Especially fapolicy because the documentation is shit.
It’s the one thing I don’t miss about being a sysadmin.