- May 24, 2020
- 202
- 210
You expect to test potentially malicious code, and at no time you chroot before starting it ?
Hmmm, not really interested by Linux, did they finally have jails, or is chroot still their best solution ? Not that it's a bad one.
I didnt know so I googled it, there is a chroot jail command, it isolates the process and its children but it still looks like its kinda vulnerable to privesc since it only hides the rest of the filesystem and is really dependent on what youre giving access to

I liked this guys approach where he just says
You must be registered to see the links
and then limits perms, i still think its vulnerable in the same ways but the idea is better. Linux is like a weird area where people like me picked it up because it seemed like there was more info on how it worked and it felt like it was easier to get help than with windows, now I wish I understood more about the windows userland.