Hacker News new | ask | show | jobs
by sarciszewski 3880 days ago
Because I think whitelisting the syscalls at init and only being able to drop syscalls is a great idea.