Главная
Study mode:
on
1
Intro
2
Context
3
What are we protecting
4
Bug life time
5
git history
6
long tail
7
dirtycow
8
Bugfighting
9
Failure modes
10
Bugs
11
Killing Bug Classes
12
Killing Exploitation
13
Kernel SelfProtection
14
Kernel Releases
15
Specter in Meltdown
16
Refcount Conversions
17
Internal Systems
18
Multiplication Overflows
19
SSB
20
Coming Features
21
Challenges
22
hypervisor
23
hypervisor magic bullet
24
questions
25
GCC plugin support
Description:
Explore the latest developments in the Kernel Self-Protection Project through this informative conference talk by Kees Cook from Google. Gain insights into security defenses implemented in Linux kernels 4.14 through 4.18, including vmapped stacks, structure randomization, SLUB freelist obfuscation, and more. Learn about the evolution of kernel CVE lifetimes, ongoing defense developments, and areas requiring further attention. Discover the speaker's extensive background in Free Software, his contributions to various projects, and his current focus on Linux kernel security features. Delve into topics such as bug lifetimes, failure modes, bug-fighting strategies, and upcoming features in kernel self-protection.

Kernel Self-Protection Project: Overview and Recent Developments

Linux Foundation
Add to list
0:00 / 0:00