From Capabilities to AppArmor: Layering Linux Runtime Security
Capabilities, seccomp, and AppArmor working together to shut down the bad stuff
Apr 27, 202610 min read5

Search for a command to run...
Articles tagged with #linux
Capabilities, seccomp, and AppArmor working together to shut down the bad stuff

No bash, no curl, still getting **** done

From Pod Spec to Syscall Boundary

How Linux Decides Which Syscalls Are Allowed to Exist

Getting to real Linux, containers, and Kubernetes without a heavy lab setup

Not Security. A Kernel Contract.
