|
|
|
|
|
by calebbrown
1506 days ago
|
|
Author here. It's running a Podman container (like Docker but daemon-less) with a GVisor runtime for isolation inside the docker container. The outer container is privileged, but doesn't run any attacker controlled code. But, yeah, seeing those two strings together in the same command is certainly amusing. |
|