Lorenz Bauer · @lmb
11 followers · 22 posts · Server fosstodon.org

The recording of my talk at is now online: youtu.be/9p4qviq60z8 I talk about a proof of concept which explores how we could make safer without having to rely on signing BPF itself. Uses kfuncs, BPF LSM, and IMA under the hood.

#lsfmmbpf #ebpf #fsverity

Last updated 1 year ago

Alex Willmer · @alex
56 followers · 108 posts · Server social.moreati.org.uk

Released fsverity-hash 0.0.5, with a CLI interface pypi.org/project/fsverity-hash
$ fsverity digest spam.txt
sha256:3ed673d5323c9e1c60820f207464b0b858a90ba4ff940b123dd16b425699cebe spam.txt
$ python3 -m fsverity_hash spam.txt
sha256:3ed673d5323c9e1c60820f207464b0b858a90ba4ff940b123dd16b425699cebe spam.txt

#python #fsverity

Last updated 1 year ago

Alex Willmer · @alex
51 followers · 62 posts · Server social.moreati.org.uk

Prototype of fs-verity hash now goes to 8 billion. A bit more tinkering, then I'll make a package gist.github.com/moreati/978954

#python #fsverity

Last updated 2 years ago

GrapheneOS · @GrapheneOS
3673 followers · 201 posts · Server grapheneos.social

GrapheneOS continues to work on improving verified boot and hardware attestation security significantly beyond the basic system in standard Android 13.

As part of this, our app repository client now supports installing fs-verity metadata with packages:

grapheneos.social/@GrapheneOS/

#grapheneos #privacy #security #android #verifiedboot #attestation #measuredboot #fsverity #integrity #auditor

Last updated 2 years ago