Using Seccomp to Limit the Kernel Attack Surface

Using Seccomp to Limit the Kernel Attack Surface

NDC Conferences via YouTube Direct link

System calls

3 of 33

3 of 33

System calls

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Using Seccomp to Limit the Kernel Attack Surface

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 What is Seccomp
  3. 3 System calls
  4. 4 Seccomp history
  5. 5 Filter mode
  6. 6 System call limitation
  7. 7 Seccomp
  8. 8 Second Filtering
  9. 9 BPF
  10. 10 Virtual Machine
  11. 11 Conditional Jump Instructions
  12. 12 Relative Offsets
  13. 13 System Call Structure
  14. 14 BPF Statement
  15. 15 BPF Jump
  16. 16 BPF Return
  17. 17 ADD
  18. 18 Architecture
  19. 19 System Call Numbers
  20. 20 System Call Conventions
  21. 21 Filter Program
  22. 22 Example
  23. 23 Performance Cost
  24. 24 Which System Causes My Application Make
  25. 25 What About That
  26. 26 System Call Filtering
  27. 27 Lubeset Comp
  28. 28 Seccomp Context
  29. 29 BPF Compiler
  30. 30 JIT Compiler
  31. 31 Applications
  32. 32 Further Information
  33. 33 Questions

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.