Djalal Harouni
Home
About
PGP Key
RSS
  • Kernel Image Lockdown and eBPF Flexibility!

    11 Feb 2022, 00:00 · 6 min read · opensource linux kernel bpf security  ·
    Share on:
    Kernel Image Lockdown and eBPF Flexibility!

    The Kernel Lockdown feature that was merged in Linux 5.4 is designed to prevent both direct and indirect access to a running kernel image, attempting to protect against unauthorized modification of the kernel image and to prevent access to security and cryptographic data located in kernel memory, whilst still …

    Read More
  • eBPF: Block Linux Fileless Payload "Malware" Execution with BPF LSM

    06 Feb 2022, 00:00 · 6 min read · opensource linux kernel bpf security IoT  ·
    Share on:
    eBPF: Block Linux Fileless Payload "Malware" Execution with BPF LSM

    Due to the security features that Linux offers, like booting directly into a readonly filesystem, making filesystems readonly at runtime for apps and containers, some attacks have been using what is known as "fileless binary execution" to avoid such protections, and gain the ability to execute binaries …

    Read More
  • eBPF Summit 2021 - Talk: BPF to bridge Cloud and IoT Linux Security

    04 Jan 2022, 00:00 · 1 min read · opensource linux kernel bpf security IoT  ·
    Share on:
    eBPF Summit 2021 - Talk: BPF to bridge Cloud and IoT Linux Security

    At the eBPF Summit 2021, I gave a talk about how to take advantage of eBPF to try to bridge some cloud and IoT security features. My Talk can be found here: BPF to bridge Cloud and IoT Linux Security on youtube All eBPF Summit 2021 here: eBPF Summit 2021 Youtube Channel

    Read More

Djalal Harouni

Open Source Software hacker / Cloud / Linux kernel / BPF / systemd from Constantine dz.
Read More

Featured Posts

  • Kernel Image Lockdown and eBPF Flexibility!
  • eBPF: Block Linux Fileless Payload "Malware" Execution with BPF LSM
  • eBPF Summit 2021 - Talk: BPF to bridge Cloud and IoT Linux Security
  • Modernization of Linux proc filesystem and containers security
  • Linux kernel improve Module autoloading infrastructure
  • Hardening Linux-based IoT systems
  • systemd Sandbox or systemd Lightweight Containers

Recent Posts

  • Kernel Image Lockdown and eBPF Flexibility!
  • eBPF: Block Linux Fileless Payload "Malware" Execution with BPF LSM
  • eBPF Summit 2021 - Talk: BPF to bridge Cloud and IoT Linux Security
  • DZ Open Source contributions into space Mars 2020 Helicopter, Ingenuity
  • All systems go Conference - Modern deployment for Embedded Linux and IoT Talk
  • Modernization of Linux proc filesystem and containers security
  • Linux kernel improve Module autoloading infrastructure
  • Hardening Linux-based IoT systems

Categories

LINUX 10 OPENSOURCE 9 TECHNOLOGY 7 BPF 3 SECURITY 3

Tags

LINUX 10 OPENSOURCE 10 KERNEL 9 SECURITY 9 IOT 4 BPF 3 CONTAINERS 2 SYSTEMD 2 ALGERIA 1 CONFERENCE 1 MARS 1 SPACE 1
Djalal Harouni

Copyright  DJALAL HAROUNI. All Rights Reserved