• [$] Securing BPF LSMs against tampering

    From LWN.net@1337:1/100 to All on Friday, July 17, 2026 17:00:06
    [$] Securing BPF LSMs against tampering

    Date:
    Fri, 17 Jul 2026 15:58:17 +0000

    Description:
    Since 2020, BPF programs have been able to act as Linux security modules (LSMs). Several projects, including systemd, have been working to use
    that capability to provide more security to users. Christian Brauner
    spoke at the 2026 Linux Storage, Filesystem, Memory-Management, and BPF
    Summit about some of the limitations of using BPF in this way, and the
    changes he
    would like to see for systemd's use. In particular, he would like a way to make
    sure that BPF programs cannot be removed or have their private data tampered with.

    ======================================================================
    Link to news story:
    https://lwn.net/Articles/1082111/


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet UK HUB @ hub.uk.erb.pw (1337:1/100)