Hacker News new | ask | show | jobs
by sintax 584 days ago
Don't know about apple, but on linux you can live patch a running kernel with security updates (kpatch/ksplice/...).
1 comments

Right, which means that an attacker can trick your kernel into patching itself to do something malicious.
And automatic periodical reboots give hackers the piece they were missing. :)