Skip to content

Properly Containerize all new processes #46

@ErikMcClure

Description

@ErikMcClure

Currently we don't enforce permission restrictions on new processes. We should, by default, have a method to deny all network, filesystem, and any other syscalls on both linux and windows, with the ability to turn this on or off on a per-module basis.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions