Hacker News new | ask | show | jobs
by craftoman 2560 days ago
Container isolation based on a kernel that wasn't prepared for this never happened. It's like jails for BSD or cgroup for Linux IMHO. I have found one exploit valuable at $10K, capable of host escaping (RCE) that's still active based on the seller. You may be sceptical but don't forget this one: https://github.com/Frichetten/CVE-2019-5736-PoC?files=1