reports/sig-security/2017-07-05.md
Time: 9am PDT (12pm EDT, 5pm BST) see the time in your timezone
Meeting location: https://docker.zoom.us/j/779801882
Announcement: Moby project forum post
Video recording: https://youtu.be/qkp0JqtlST0
Previous meeting notes: 2017-06-21
Memorizer deep dive - @ndauten (30 min)
MemorizerScribe: @mgoelzer
Next meeting: July 19th
Automatic Privilege Separation
OPS = opportunistic privilege separation (meta project)
Our infra operates on a large, untrusted code base. Easily exploitable. “Titanic”
Strategies to address these problems:
What about flipping the script? - by default everything is protected and then whitelist
Limitations of existing approaches
Tools / Projects: