As AI accelerates kernel vulnerability discovery and exploitation, the barrier to escaping containers by attacking kernel has fallen so significantly that we must assume attackers can do so at will.

6 points•conor-•8 days ago•1 comment•

1 comment

vsgherzi7 days ago
Containers on Linux are not and were never a security boundary. Containers are simply namespaces and cgroup. Other operating systems may include more robust facilities.

Read the full thread on Hacker News →

Related stories