Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
containrh4x0r
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
by
containrh4x0r
7y ago
repeat after me - "there are no isolation boundaries with containers" "containers are insecure" Containers are broken by default because they share a kernel. If you want to use a container to have a replicable build envi
2.
▲
by
containrh4x0r
7y ago
jp morgan chase has a security budget of $600M/yr https://www.secureworldexpo.com/industry-news/jpmorgan-chase...
3.
▲
by
containrh4x0r
7y ago
another gem "ptrace sandboxing" ala gvisor which is horribly slow and shouldn't be used for production systems https://news.ycombinator.com/item?id=19924036 seriously - what is going on at google nowadays? ha
4.
▲
by
containrh4x0r
7y ago
"use containers" - no no no - containers and kubernetes are horribly insecure and in a multi-tenant situation not even an option great marketing google!