Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rafaeldavidtin
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
CVE-2026-23111: exploiting and detecting a nftables UAF born from a security fix
(medium.com)
2 points
by
rafaeldavidtin
3mo ago
|
0 comments
2.
▲
Detecting CopyFail and DirtyFrag by thinking outside the box
(medium.com)
2 points
by
rafaeldavidtin
4mo ago
|
0 comments
3.
▲
Jibril Runtime Security v2.4: Programmable Reactions to OS Security Events
(jibril.garnet.ai)
1 points
by
rafaeldavidtin
1y ago
|
0 comments
4.
▲
Jibril Runtime Security v2.4: Reactions to Detections
1 points
by
rafaeldavidtin
1y ago
|
0 comments
5.
▲
Jibril Runtime Security v2.2 Released
(jibril.garnet.ai)
4 points
by
rafaeldavidtin
1y ago
|
1 comments
6.
▲
by
rafaeldavidtin
1y ago
# Jibril Runtime Security v2.2 Released Jibril is a cutting-edge runtime monitoring and threat detection engine, designed to deliver real-time insights with minimal impact on system performance. Powered by eBPF, it remains efficient even un
7.
▲
Jibril Runtime Security v2.1 Released
(way.toomanyattempts.com)
6 points
by
rafaeldavidtin
1y ago
|
1 comments
8.
▲
by
rafaeldavidtin
1y ago
# Jibril Runtime Security v2.1 Released Jibril ( https://jibril.garnet.ai/ ) is a free runtime monitoring and threat detection tool for Linux, designed for development, CI/CD, and production environments. It captures sys
9.
▲
by
rafaeldavidtin
1y ago
Nah, we're just working hard to get something really cool! Cheers!
10.
▲
by
rafaeldavidtin
1y ago
Let us know how it goes, we're eager for feedback ( https://discord.gg/E6fC4hFQ ). Cheers!
11.
▲
by
rafaeldavidtin
1y ago
I'm looking forward to talking them. Let them know we have a free of charge partnering program right now (where they can be design partners for the tool, get integrations and features that attend their needs and support). This is meant
12.
▲
by
rafaeldavidtin
1y ago
Take a look at https://jibril.garnet.ai/readme/theory-behind so you have a better understanding what we are doing. As long as there is 'a resource' and 'an action', we can track it. Full memory (fil
13.
▲
by
rafaeldavidtin
1y ago
I agree it’s risky and, IMO, it would be as good as the policy that drives it. Same happens with seccomp, lsm hooks (bpf or apparmor:selinux:smack:tomoyo), nft or netfilter, or any other policy driven mechanism. Now, the enforcement feature
14.
▲
by
rafaeldavidtin
1y ago
Hello everyone! I'm Rafael David Tinoco, the lead developer behind Jibril Runtime Security at Garnet Labs. I'm thrilled to share this exciting journey with you as we launch Jibril, a next-generation runtime security tool designed
15.
▲
by
rafaeldavidtin
2y ago
1. Feature isn't public yet, but currently we're able to block ingress/egress by IP + MASK and/or DOMAIN resolutions (meaning blocking the resolution itself, or anything that is resolved from or to example.com, synchrono
16.
▲
by
rafaeldavidtin
2y ago
About short lived, or dynamically generated, steps: yes (or it is a bug if it can't). About tasks duration: it does not matter if a task existed for 1 ms or 10 mins, we catch what we need/want (with almost no overhead, at all). Ab