I think what's being referred to here are the kernel self-protection features of grsec which are now a part of modern MacOS/Windows, but missing on mainline Linux... not just the extra bits (paxctl/tpe/etc.) which are awkwardly compared to SELinux and friends.
Power management, mobile and firmware developer on Linux. Security developer at Aurora. Ex-biologist. mjg59 on Twitter. Content here should not be interpreted as the opinion of my employer. Also on Mastodon.
Re: Because not enough people care about the kernel security features?
Date: 2015-11-08 10:09 am (UTC)