Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <1066672844.15713138.1447852432638.JavaMail.zimbra@redhat.com>
Date: Wed, 18 Nov 2015 08:13:52 -0500 (EST)
From: Josh Bressers <bressers@...hat.com>
To: oss-security@...ts.openwall.com
Subject: Data on Linux attacks (was Re: Re: Fwd: x86 ROP
 mitigation)

> 
> We face the problem that I and my immediate colleagues (on the Red Hat
> tools team) do not have access to information about successful
> compromises, and what attackers actually do today, on GNU/Linux systems,
> both to achieve initial access and to maintain a presence afterwards.
> Under these conditions, anything we implement is, to some degree,
> arbitrary and a shot in the dark.  We can still use our best judgment to
> set priorities, but we are very far from being guided by empirical evidence.
> 

This is a place I think we could all stand to work together on. If anyone
has any information on Linux attacks it would be very useful for planning
future projects.

There is a lot of evidence against some other platforms, but I've not seen
anything great around Linux specifically.

If anyone has ideas or comments, I'm all ears.

-- 
    JB

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.