3 ms·
Show HN: Z-Jail – A 130 KB Linux sandbox-C99 with 7 defense layers and zero deps
- tosti 3mo agoWho the F* runs a minimizer on friggin C sources? And it's inconsistent too. Security-related code should be readable and auditable.
- Kaxo 3mo agoThe seccomp-BPF rules seem almost unusably strict. What is this even designed to be used to run?
- gwerbin 3mo agoIt says on their Github profile that they are building some kind of nowhere detection product. Maybe in that context, a very strict syscall allowlist is useful or good? > It is designed for CI pipelines, CTF jail challenges, and lightweight code evaluation Looking at the list, it seems pretty good for that. What does a CI runner that just needs to run GCC or whatever really need? Edit: no open does seem restrictive. Not that it's bad security (not my area of expertise), but how many useful programs use open that are just off limits here?
- iririririr 3mo agoallowing individual syscall is the sandbox standard today on BSDs and optin on linux. project have some issues but being too restrictive is not one
- abtinf 3mo agoSetting aside that this seems to be pure slop, what’s with all the empty commits?
- SwellJoe 3mo agoI don't think I'm ready to trust very security sensitive functions to pure vibe-coded software, and that's what this seems to be? Certainly the README is authored by an LLM, and there's a gazillion empty commits and other weirdness that indicates no human is in the loop. It looks like a loop engineered this software. Models have gotten good, but c'mon. Good idea, maybe even a good implementation, but I don't have confidence in it, and you've got to have confidence in a project that claims to provide security. Also, even the best models still regularly write C security bugs. It doesn't make sense to have a model write C code when having it write in a memory safe language is only slightly more effort/cost.
- gchamonlive 3mo agoHow you type is a poor proxy for code quality. Code quality is a good proxy for code quality. Inspect the code, build a verification pipeline for it, use agents to explore the code and the architecture, see if you can unearth anything fowl.
- yjftsjthsd-h 3mo agoIt's not "how you type", it's "whether any human so much as laid eyes on the code". I wouldn't automatically discard code from an LLM, but let's put the goalposts where they actually are.
- gchamonlive 3mo agoHow do you know nobody laid eyes on the code in the project?
- SwellJoe 3mo agoHave you look at the commits? A bunch of empty ones (seemingly all empty ones, though there must be some real ones in there somewhere). It's a bizarre looking repo. I don't even know how you make a repo look like that, but it certainly doesn't allow tracing of what code was added when and why. It looks suspicious, even if it isn't. All those empty commits look like an intentional obfuscation of something, though I have no idea what.