|
|
|
|
|
by viraptor
3077 days ago
|
|
Right. I think I see the difference he intends. I see this more of a practice -vs- theory issue. (Or in isolation/in deployment) In theory he can work on designing the correct version of gzip and there's a chance he'll succeed. But in practice, I'm still putting a seccomp/pledge-equivalent on it, because if he fails, I'm stopping local root escalation and potential lateral movement, which he doesn't seem to think are interesting consequences. |
|
DJB isn't advocating against using seccomp or a pledge-equivalent.
DJB is advocating against stopping there.