From 1b965fcfe9a2e320e9606fc9c7dbb586fead759f Mon Sep 17 00:00:00 2001 From: tommytran732 Date: Wed, 17 Aug 2022 05:36:16 -0400 Subject: [PATCH] Firejail Video Signed-off-by: tommytran732 --- content/os/Linux-Desktop-Hardening.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/content/os/Linux-Desktop-Hardening.md b/content/os/Linux-Desktop-Hardening.md index 75b6dec..7636025 100644 --- a/content/os/Linux-Desktop-Hardening.md +++ b/content/os/Linux-Desktop-Hardening.md @@ -105,6 +105,8 @@ One caveat with Snap packages is that you only have control over the interfaces ### Firejail +{{< youtube id="N-Mso2bSr3o">}} + [Firejail](https://firejail.wordpress.com/) is another method of sandboxing. As it is a large [setuid](https://en.wikipedia.org/wiki/Setuid) binary, it has a large attack surface which may assist in [privilege escalation](https://en.wikipedia.org/wiki/Privilege_escalation). Madaidan [provided](https://madaidans-insecurities.github.io/linux.html#firejail) additional details on how Firejail can worsen the security of your device.