🦞🌯 Lobster Roll

Thread

Model-Checking an Entire Linux Distribution for Security Vulnerabilities (2005) (people.eecs.berkeley.edu)
Uses [MOPS](https://people.eecs.berkeley.edu/~daw/mops/).

Stories related to "Model-Checking an Entire Linux Distribution for Security Vulnerabilities (2005)" across the full archive.

Model-Checking an Entire Linux Distribution for Security Vulnerabilities (2005) (people.eecs.berkeley.edu)
Uses [MOPS](https://people.eecs.berkeley.edu/~daw/mops/).
Memory-Model Recommendations for Rusting the Linux Kernel (paulmck.livejournal.com)
Data science linux distribution (datasciencelinux.com)
cr0 blog: Introducing Chrome's next-generation Linux sandbox (blog.cr0.org)
Attacking hardened Linux systems with kernel JIT spraying (mainisusuallyafunction.blogspot.com)
Full Disclosure: linux rootkit in combination with nginx (seclists.org)
Linux terminal keylogger in userspace (average-coder.blogspot.com.ar)
Exploiting 64-bit Linux like a boss (scarybeastsecurity.blogspot.se)
Forensic Analysis of Tor on Linux (blog.torproject.org)
A closer look at a recent privilege escalation bug in Linux (CVE-2013-2094) (timetobleed.com)
Use Google Authenticator For Two-Factor SSH Authentication in Linux (scottlinux.com)
SELinux's toxic mistake (utcc.utoronto.ca)
Linux Back Door Uses Covert Communication Protocol (symantec.com)
Why you will love nftables (iptables replacement in linux 3.13) (home.regit.org)
Linux 3.4+: arbitrary write with CONFIG_X86_X32 (CVE-2014-0038) (openwall.com)
Differences Between ASLR on Windows and Linux (cert.org)
10,000 Linux servers hit by malware serving tsunami of spam and exploits (arstechnica.com)
That's right, tsunami.
Fishing for Hackers: Analysis of a Linux Server Attack (draios.com)
The Linux Security Circus: On GUI isolation (2011) (theinvisiblethings.blogspot.com.br)
Libressl's prng is unsafe on linux (agwa.name)
Linux introduces getrandom(2) syscall (helpful for LibreSSL) (lists.openwall.net)
CVE-2014-7284 (NGRO Bug): Lack of randomness in Linux kernel network secrets (webcache.googleusercontent.com)
On Linux, 'less' can probably get you owned (seclists.org)
Offset2lib: bypassing full ASLR on 64bit Linux (cybersecurity.upv.es)
Linux kernel: multiple x86_64 vulnerabilities (seclists.org)
The Linux “Grinch” Vulnerability: Separating The Fact From The FUD (blog.threatstack.com)
Multi-threaded setxid on Linux (ewontfix.com)
Slightly related issue that also provides some context: https://github.com/golang/go/issues/1435
Exploiting “BadIRET” vulnerability (CVE-2014-9322, Linux kernel privilege escalation) (labs.bromium.com)
First fully sandboxed Linux desktop app (blogs.gnome.org)
​No reboot patching comes to Linux 4.0 (zdnet.com)