Commit graph

2980 commits

Author SHA1 Message Date
raja-grewal
1a7b0a9122
Disable more file systems 2025-11-21 12:43:05 +00:00
raja-grewal
1865cafe44
Move joydev from blacklist to disable 2025-11-21 12:42:10 +00:00
raja-grewal
28476d3d53
Update docs on GrapheneOS blacklisted modules 2025-11-21 12:40:12 +00:00
raja-grewal
446d3771bf
Update docs on CD-ROM/DVD blacklisting 2025-11-21 12:38:44 +00:00
raja-grewal
3646a2fefe
Move superseded brcm80211 to disabled
Split and replaced by brcmsmac and brcmfmac in kernel 2.6.39
2025-11-21 12:37:57 +00:00
raja-grewal
66ba273d44
Add CPU MSR modules 2025-11-21 12:36:57 +00:00
raja-grewal
e6aa648d54
Update docs on CPU MSR disabling 2025-11-21 12:36:32 +00:00
raja-grewal
59869979bb
Update docs on Vivid disabling 2025-11-21 12:35:51 +00:00
raja-grewal
4597fd16a9
Sort RDNIS disabling and add docs 2025-11-21 12:35:03 +00:00
raja-grewal
5adc007536
Update docs on Intel PMT disabling 2025-11-21 12:33:15 +00:00
raja-grewal
31e3aa0c3a
Update docs on Bluetooth disabling 2025-11-21 12:32:30 +00:00
Patrick Schleizer
9f85a78c99
bumped changelog version 2025-11-19 07:02:14 +00:00
Patrick Schleizer
4e7cfb0d06
Merge remote-tracking branch 'ArrayBolt3/arraybolt3/trixie' 2025-11-19 01:55:10 -05:00
Aaron Rainbolt
936c799cb5
Don't break passwordless sudo in unrestricted admin mode 2025-11-18 23:53:03 -06:00
Patrick Schleizer
d267cf6761
bumped changelog version 2025-11-14 06:21:34 +00:00
Patrick Schleizer
efa06a1eae
port to package-installed-check 2025-11-14 00:44:50 -05:00
Patrick Schleizer
abf5852eba
bumped changelog version 2025-11-12 06:13:05 +00:00
Patrick Schleizer
3af8916455
Merge remote-tracking branch 'ArrayBolt3/arraybolt3/trixie' 2025-11-11 23:59:50 -05:00
Aaron Rainbolt
3070aa5d1f
Fix passwordless login for sensitive accounts, only deny passwordless privilege escalation 2025-11-10 22:40:15 -06:00
Patrick Schleizer
fb587f78fd
bumped changelog version 2025-11-10 08:00:06 +00:00
Patrick Schleizer
fc1b865dd7
debugging 2025-11-10 02:21:27 -05:00
Patrick Schleizer
45126cede6
end-of-options 2025-11-10 02:19:29 -05:00
Patrick Schleizer
61637a5ff0
refactoring 2025-11-10 02:15:30 -05:00
Patrick Schleizer
ddb59a3b01
comment 2025-11-10 02:13:48 -05:00
Patrick Schleizer
ae1e2e3b52
output 2025-11-10 02:10:25 -05:00
Patrick Schleizer
f2b7658542
use long option names 2025-11-10 02:09:54 -05:00
Patrick Schleizer
71ca68bd4a
end-of-options 2025-11-10 02:09:00 -05:00
Patrick Schleizer
e9e6c12b03
output 2025-11-10 02:08:04 -05:00
Patrick Schleizer
f5db916bf7
fix 2025-11-10 02:06:55 -05:00
Patrick Schleizer
bb0a23fcc8
chmod +x 2025-11-10 02:05:47 -05:00
Patrick Schleizer
39a6ce002e
genmkfile debinstfile 2025-11-10 02:05:03 -05:00
Patrick Schleizer
94de949a47
Merge remote-tracking branch 'ArrayBolt3/arraybolt3/trixie' 2025-11-10 02:04:15 -05:00
Aaron Rainbolt
5fbd42bbec
Add kill-vboxdrmclient-on-shutdown.service 2025-11-09 18:38:54 -06:00
Aaron Rainbolt
9d86379f56
Prevent non-sysmaint logins in sysmaint mode and unsafe passwordless logins in user mode 2025-11-09 17:50:28 -06:00
Patrick Schleizer
0939883f0b
bumped changelog version 2025-11-09 10:47:45 +00:00
Patrick Schleizer
0391411885
revert Force immediate kernel panic on OOM.
https://github.com/Kicksecure/security-misc/issues/324#issuecomment-3507949741
2025-11-09 05:47:00 -05:00
Patrick Schleizer
26b96ce280
bumped changelog version 2025-11-09 08:12:42 +00:00
Patrick Schleizer
1ef974300a
readme 2025-11-08 04:00:47 -05:00
Patrick Schleizer
48ce12eba3
bumped changelog version 2025-11-08 07:44:43 +00:00
Patrick Schleizer
69419357e1
genmkfile debinstfile 2025-11-08 02:42:25 -05:00
Patrick Schleizer
d50e6afc8f
sanity test 2025-11-08 01:34:32 -05:00
Patrick Schleizer
1267960842
comments 2025-11-08 01:32:45 -05:00
Patrick Schleizer
1e48886c7e
long option name 2025-11-08 01:31:02 -05:00
Patrick Schleizer
d6c949c791
Merge remote-tracking branch 'ArrayBolt3/arraybolt3/trixie' 2025-11-08 01:29:48 -05:00
Aaron Rainbolt
fa32ba6c4f
Suppress usbguard startup unless a USB controller is visible to lspci 2025-11-07 17:09:34 -06:00
Patrick Schleizer
5b97e7bd27
bumped changelog version 2025-11-02 11:41:51 +00:00
Patrick Schleizer
58d5f738e6
Merge remote-tracking branch 'ArrayBolt3/arraybolt3/trixie' 2025-11-02 06:08:46 -05:00
Patrick Schleizer
5121f80f28
comment 2025-11-02 06:00:24 -05:00
Patrick Schleizer
29685938bd
move usbguard reject rules to the top 2025-11-02 05:57:52 -05:00
Aaron Rainbolt
7beb19b64a
Update README.md with info about flatpak auth hardening 2025-11-01 22:06:44 -05:00