TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Using Linux IMA with eBPF to protect a workload from supply chain risk

15 pointsby robszumskiover 1 year ago

1 comment

badrabbitover 1 year ago
I&#x27;ve tried implementing ima+evm. Not hard to setup but very hard to maintain securely. It would require distros and package managers to support it but every distro is still stuck in the 90&#x27;s with their anti-pki ideology. Imagine if every system managed binary was cryptographically authenticated? Like macos and windows (well, windows has holes as always).<p>Another issue is, IMA isn&#x27;t used much so I am not confident about adequate security research&#x2F;scrutiny having been performed to bypass&#x2F;disable it.
评论 #38668822 未加载