|
|
|
|
|
by sellmesoap
93 days ago
|
|
> Inside the sandbox but not on my machine. Show me how it can access an unmounted directory. So it says right on the tin of my favorite distro:
'Warning: Beware that the docker group membership is effectively equivalent to being root!
Consider using rootless mode below.' So # docker run super-evil-oci-container with a bind mount or two and your would-be attacker doesn't need to guess your sudo password. |
|