Hacker News new | ask | show | jobs
by FooBarWidget 1 day ago
Rootless containers have privilege escalation risks of their own. The problem is the unprivileged_userns_clone sysctl, which rootless containers rely on, has historically been a big source of local privilege escalations. The most recent attack I'm aware of is CIFSwitch.
1 comments

Why use Microsoft broken technologies on Linux?