PolitiTweet Archive
Home Figures About
Donate
Profile Image

Joanna Rutkowska

@rootkovska ↗

  • Overview
  • Archive
  • Deleted
Deleted No
Hibernated No
Last Checked March 11, 2019

Created

Wed Jan 04 09:40:08 +0000 2017

Likes

72

Retweets

18

Source

TweetDeck

View Raw Data

JSON Data

View on Twitter

Likely Available
Profile Image

Joanna Rutkowska @rootkovska

Contrary to a popular opinion, an attacker doesn't need to execve(/bin/bash) nor calc.exe, nor call any syscalls, once in the kernel. — PolitiTweet.org

Posted Jan. 4, 2017

Preceded By

Profile Image

Joanna Rutkowska @rootkovska

Hvisor monitors if kernel illegally exec()s a more priv'ed processes... Trivially by-passable by shellcode which us… https://t.co/vZf4hVQGto — PolitiTweet.org

CoreOS, Inc. @coreos

Detecting privilege escalation inside of containers using KVM: a new idea in #rkt https://t.co/BDU3mBnsgH https://t.co/b4TaJvxt9V

Posted Jan. 4, 2017

Followed By

Profile Image

Joanna Rutkowska @rootkovska

To detect such attacker, the hvisor would need to monitor all interesting functions in the kernel. Soon the hvisor would become v. complex.. — PolitiTweet.org

Posted Jan. 4, 2017

© 2025 Politiwatch. Tweets and other media belong to their indicated owners; all other materials are licensed CC-BY-SA. If you use PolitiTweet professionally, please feel free to let us know. Note that PolitiTweet stopped archiving new tweets on April 3, 2023, when Twitter disabled our API access.