Conversation
Edited 1 year ago

I'm really excited about making Use-After-Free exploits much harder in the .

CONFIG_RANDOM_KMALLOC_CACHES has landed:
https://git.kernel.org/linus/3c6152940584

CONFIG_SLAB_VIRTUAL is coming:
https://lore.kernel.org/lkml/20230915105933.495735-15-matteorizzo@google.com/

2
10
3

Lorenzo Stoakes

@kees nice work! But I wish security issues didn't exist (because they're a pain).

It's funny, I was at a talk a few days ago where they guy made the point that whackamole-ing exploits is somewhat pointless, whereas making it harder to _actually exploit vulnerabilities_ is FAR more valuable.

RE: https://fosstodon.org/users/kees/statuses/111071493566526414
2
0
2
@kees ok didn't mean for this to be a retoot(-ish) but you get the point 🤣
0
0
0

@kees will we see both of them in ubuntu 23.10 with 6.5 kernel ?

0
0
0
@kees Haha, will exploit writers be considering a different job after this? (but I guess they are way too creative though)
0
0
3

@ljs @kees has been giving that talk for ~10 years 😁

1
0
1
@mpe @kees well then he's a wise man :)
0
0
2