<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: eyberg</title><link>https://news.ycombinator.com/user?id=eyberg</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 27 Aug 2026 23:09:23 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=eyberg" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[CVE-2026-53361 AF_Unix GC vs. MSG_PEEK use-after-free container escape]]></title><description><![CDATA[
<p>Article URL: <a href="https://github.com/sgkdev/bad_garbage">https://github.com/sgkdev/bad_garbage</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=49267550">https://news.ycombinator.com/item?id=49267550</a></p>
<p>Points: 13</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 12 Aug 2026 03:31:42 +0000</pubDate><link>https://github.com/sgkdev/bad_garbage</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=49267550</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49267550</guid></item><item><title><![CDATA[Capture the Flag]]></title><description><![CDATA[
<p>Article URL: <a href="https://unik.cx/ctf/index.html">https://unik.cx/ctf/index.html</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=49252849">https://news.ycombinator.com/item?id=49252849</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 11 Aug 2026 02:57:48 +0000</pubDate><link>https://unik.cx/ctf/index.html</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=49252849</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49252849</guid></item><item><title><![CDATA[SCTPhantom: An 18-Year-Old SCTP Asconf Transport Use-After-Free]]></title><description><![CDATA[
<p>Article URL: <a href="https://matrix.tencent.com/en/2026/08/06/sctphantom-CVE-2026-64564">https://matrix.tencent.com/en/2026/08/06/sctphantom-CVE-2026-64564</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=49201059">https://news.ycombinator.com/item?id=49201059</a></p>
<p>Points: 4</p>
<p># Comments: 0</p>
]]></description><pubDate>Thu, 06 Aug 2026 19:18:14 +0000</pubDate><link>https://matrix.tencent.com/en/2026/08/06/sctphantom-CVE-2026-64564</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=49201059</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49201059</guid></item><item><title><![CDATA[New comment by eyberg in "Securing Services with Rootless Containers"]]></title><description><![CDATA[
<p>Containers and security are oxymorons. The flood of page cache cves (which can always be escalated/weaponized to an escape) from the other month is making deploying containers to prod untenable.<p>As for orchestration - a lot of folks think you need a completely new orchestration system for dealing with vms but we just simply re-use the existing infrastructure that already exists - the public clouds. Those companies have tens of thousands of engineers that are much better than the average engineer at this stuff, custom hardware, custom protocols and close to several decades of existing deployment.<p>I can build and ship a vm from my laptop/ci to prod on AWS/GCP in ~tens of second. Granted I come from the camp that thinks deploying full blown general purpose operating systems to prod is an increasingly incredibly risky practice.</p>
]]></description><pubDate>Mon, 27 Jul 2026 21:16:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=49075628</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=49075628</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49075628</guid></item><item><title><![CDATA[A reliable unprivileged container jail escape proof of concept for CentOs/RHEL]]></title><description><![CDATA[
<p>Article URL: <a href="https://github.com/sgkdev/ipv6_frag_escape">https://github.com/sgkdev/ipv6_frag_escape</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=48720684">https://news.ycombinator.com/item?id=48720684</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 29 Jun 2026 15:37:33 +0000</pubDate><link>https://github.com/sgkdev/ipv6_frag_escape</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=48720684</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48720684</guid></item><item><title><![CDATA[CISA Admin Leaked AWS GovCloud Keys on GitHub]]></title><description><![CDATA[
<p>Article URL: <a href="https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/">https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=48186370">https://news.ycombinator.com/item?id=48186370</a></p>
<p>Points: 22</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 18 May 2026 22:03:05 +0000</pubDate><link>https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=48186370</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48186370</guid></item><item><title><![CDATA[New comment by eyberg in "NIST gives up enriching most CVEs"]]></title><description><![CDATA[
<p>So first off - NVD has been sliding for a long time now. This has nothing to do with mythos. The amount of money that goes into this program for the output is straight up criminal.<p>For a very long time the security world has basically given up on defense and relies on prioritizing cves. This is wrong on so many different levels.<p>a) You can't scan for things you don't know that exist.<p>b) Malware, like all the supply chain issues in the past few months don't have cves to begin with but they are still massive security issues. That is to say the cves themselves don't really address everything. So you end up with IOCs but those are also totally worthless if it's the first time you are seeing something. You have to have proactive defense if you actually care.<p>c) There are quite a few cwes that you can outright prevent through various defensive means but for whatever reason organizations won't. This is an organizational issue - not a technical one. This might be one of the main benefits of the cve program in that it starts to penalize organizations through insurance and other means by tracking it and this is exactly how a lot of the security world operates.<p>I'm cautiously optimistic that the world is going to start looking at stronger proactive defensive measures rather than relying on this reactive scanning approach.</p>
]]></description><pubDate>Sat, 18 Apr 2026 03:34:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=47812916</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=47812916</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47812916</guid></item><item><title><![CDATA[Flatpak: Complete Sandbox Escape]]></title><description><![CDATA[
<p>Article URL: <a href="https://github.com/flatpak/flatpak/security/advisories/GHSA-cc2q-qc34-jprg">https://github.com/flatpak/flatpak/security/advisories/GHSA-cc2q-qc34-jprg</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=47699396">https://news.ycombinator.com/item?id=47699396</a></p>
<p>Points: 20</p>
<p># Comments: 0</p>
]]></description><pubDate>Thu, 09 Apr 2026 04:50:45 +0000</pubDate><link>https://github.com/flatpak/flatpak/security/advisories/GHSA-cc2q-qc34-jprg</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=47699396</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47699396</guid></item><item><title><![CDATA[New comment by eyberg in "Don't trust AI agents"]]></title><description><![CDATA[
<p>No they have not been. There were at least 16 container escapes last year - at least 8 of them were at the runtime layer.<p>I personally spent way too much time looking at this in the past month:<p><a href="https://nanovms.com/blog/last-year-in-container-security" rel="nofollow">https://nanovms.com/blog/last-year-in-container-security</a><p>runc: <a href="https://www.cve.org/CVERecord?id=CVE-2025-31133" rel="nofollow">https://www.cve.org/CVERecord?id=CVE-2025-31133</a><p>nvidia: <a href="https://www.cve.org/CVERecord?id=CVE-2025-23266" rel="nofollow">https://www.cve.org/CVERecord?id=CVE-2025-23266</a><p>runc: <a href="https://www.cve.org/CVERecord?id=CVE-2025-52565" rel="nofollow">https://www.cve.org/CVERecord?id=CVE-2025-52565</a><p>youki: <a href="https://www.cve.org/CVERecord?id=CVE-2025-54867" rel="nofollow">https://www.cve.org/CVERecord?id=CVE-2025-54867</a><p>Also, last time I checked podman uses runc by default.</p>
]]></description><pubDate>Sat, 28 Feb 2026 15:04:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=47196140</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=47196140</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47196140</guid></item><item><title><![CDATA[New comment by eyberg in "Building secure, scalable agent sandbox infrastructure"]]></title><description><![CDATA[
<p>Except this is very clearly running linux.</p>
]]></description><pubDate>Fri, 27 Feb 2026 20:55:05 +0000</pubDate><link>https://news.ycombinator.com/item?id=47185466</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=47185466</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47185466</guid></item><item><title><![CDATA[Multiple Issues in Ingress-Nginx]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.openwall.com/lists/oss-security/2026/02/02/3">https://www.openwall.com/lists/oss-security/2026/02/02/3</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=46859291">https://news.ycombinator.com/item?id=46859291</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 02 Feb 2026 18:20:53 +0000</pubDate><link>https://www.openwall.com/lists/oss-security/2026/02/02/3</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46859291</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46859291</guid></item><item><title><![CDATA[Kubernetes RCE: Exploiting nodes/proxy GET]]></title><description><![CDATA[
<p>Article URL: <a href="https://labs.iximiuz.com/tutorials/nodes-proxy-rce-c9e436a9">https://labs.iximiuz.com/tutorials/nodes-proxy-rce-c9e436a9</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=46769301">https://news.ycombinator.com/item?id=46769301</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 26 Jan 2026 18:12:01 +0000</pubDate><link>https://labs.iximiuz.com/tutorials/nodes-proxy-rce-c9e436a9</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46769301</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46769301</guid></item><item><title><![CDATA[New comment by eyberg in "Hands-On Introduction to Unikernels"]]></title><description><![CDATA[
<p>The majority of nanos users don't do either of these methods. They simply create the image (in the case of aws that's an ami) and boot it. This is part of what makes them vastly more simple than using normal linux vms or containers as you don't have to manage the "orchestration".</p>
]]></description><pubDate>Thu, 22 Jan 2026 15:48:02 +0000</pubDate><link>https://news.ycombinator.com/item?id=46720832</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46720832</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46720832</guid></item><item><title><![CDATA[New comment by eyberg in "Bubblewrap: A nimble way to prevent agents from accessing your .env files"]]></title><description><![CDATA[
<p><a href="https://github.com/containers/bubblewrap/issues/142" rel="nofollow">https://github.com/containers/bubblewrap/issues/142</a></p>
]]></description><pubDate>Thu, 15 Jan 2026 03:55:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=46627822</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46627822</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46627822</guid></item><item><title><![CDATA[New comment by eyberg in "FUSE is All You Need – Giving agents access to anything via filesystems"]]></title><description><![CDATA[
<p>A lot of these "ai sandbox" conversations target code that is <i>already</i> running in a public cloud. Running firecracker doesn't give you magical isolation properties vs running an application in ec2 - it's the same boundary. If you're trying to compare to running multi-tenant workloads in containers on the same vm vs different tenants on different vms - sure that's an improvement but no one said you had to run containers to begin with.<p>Furthermore, running lots of random 3rd party programs in the same instance, be it a container, or an ec2 vm, or a firecracker vm all have the same issues - it is inherently totally unsafe. If you want to "sandbox" something you need to detail what exactly you are wanting to isolate.<p>A lot of people might suggest not being able to write to the filesystem, read env vars, or talk over the network but these are table stakes for a lot of the workloads that people want to "isolate" to begin with.<p>So not only is there this incorrect view that you are isolating anything at all, but I'm not convinced that the most important things, like being able to run arbitrary 3rd party programs, is even being considered.</p>
]]></description><pubDate>Mon, 12 Jan 2026 04:36:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=46584156</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46584156</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46584156</guid></item><item><title><![CDATA[New comment by eyberg in "FUSE is All You Need – Giving agents access to anything via filesystems"]]></title><description><![CDATA[
<p>No they are not. The "industry" totally disagrees with this statement as well.</p>
]]></description><pubDate>Mon, 12 Jan 2026 04:18:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=46584062</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46584062</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46584062</guid></item><item><title><![CDATA[New comment by eyberg in "Sandboxing Untrusted Python"]]></title><description><![CDATA[
<p>> Escaping a properly set up container is a kernel 0day.<p>Not it is not. In fact many of the container escapes we see are because of bugs in the container runtimes themselves which can be quite different in their various implementations. CVE-2025-31133 was published 2? months ago and had nothing at all do with the kernel - just like many container escapes don't.</p>
]]></description><pubDate>Tue, 06 Jan 2026 02:52:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=46508192</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46508192</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46508192</guid></item><item><title><![CDATA[New comment by eyberg in "Toro: Deploy Applications as Unikernels"]]></title><description><![CDATA[
<p>Duplicating a networking and storage layer on top of existing storage/networking layers that containers, and the orchestrators such as k8s provide, absolutely degrade performance - full stop. No one runs containers raw (w/out an underlying vm) in the cloud - they always exist on top of vms.<p>The problem with "container" security is that even in this thread many people seem to think that it is a security barrier of some kind when it was never designed to be one. The v8 sandbox <i>was</i> specifically created to deal with sandboxing. It still has issues but at least it was thought about and a lot of engineering went into it. Container runtimes are not exported via the kernel. Unshare is not named 'create_container'. A lot of the container issues we see are runtime issues. There are over a half-dozen different namespaces that are used in different manners that expose hard to understand gotchas. The various container runtimes decide themselves how to deal with these and they have to deal with all the issues in their code when using them. A very common bug that these runtimes get hit by are TOCTOU (time of check to time of use) vulns that get exposed in these runtimes.<p>Right now there is a conversation about the upcoming change to systemd that runs sshd on vsock by default (you literally have to disable it via kernel cli flag - systemd.ssh_auto=no) - guess what one of the concerns is? Vsock isn't bound to a network namespace. This is not itself a vulnerability but it most definitely is going to get taken advantage in the future.</p>
]]></description><pubDate>Tue, 30 Dec 2025 23:10:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=46439249</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46439249</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46439249</guid></item><item><title><![CDATA[New comment by eyberg in "Toro: Deploy Applications as Unikernels"]]></title><description><![CDATA[
<p>A shell by design is explicitly made to run other programs. You type in 'ls', 'cd', 'cat', etc. but those are all different programs. A "webshell" can work to a degree as you could potentially upload files, cat files, write to files, etc. but you aren't running other programs under these conditions - that'd be code you're executing - scripting languages make this vastly easier than compiled ones. It's a lot more than just slapping a heavy-handed seccomp profile on your app.<p>Also merging the address space is not a necessity. In fact - 64-bit (which is essentially all modern cloud software) mandates virtual memory to begin with and many unikernel projects support elf loading.</p>
]]></description><pubDate>Tue, 30 Dec 2025 22:53:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=46439091</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46439091</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46439091</guid></item><item><title><![CDATA[New comment by eyberg in "Toro: Deploy Applications as Unikernels"]]></title><description><![CDATA[
<p>We don't enable that exec-protect feature on by default explicitly for this reason. You are right - jit needs it.</p>
]]></description><pubDate>Tue, 30 Dec 2025 21:34:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=46438293</link><dc:creator>eyberg</dc:creator><comments>https://news.ycombinator.com/item?id=46438293</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46438293</guid></item></channel></rss>