5 ms·
> Doesn't this apply to really any sort of isolated environment? What's wrong with chroot vs a vm? If you are implying _PoC GTFO_, then definitely I do not hav
by lsofzz 6y ago
> Doesn't this apply to really any sort of isolated environment? What's wrong with chroot vs a vm?
If you are implying _PoC GTFO_, then definitely I do not have anything to suggest today that either is secure but I would rather not base my comment on what's not seen in the wild and also on the limited breadth of my research.
If anything, we've learnt the from past exploitations of guest additions/kernel modules in guests/vmm, that all of it is real and possible. Given enough resource, time and eyeballs, a _lot_ of the bugs are exploitable - you just have to ask some of the folks in offsec who develop exploits for living.