Small blog by me about using @chompie1337
's late eBPF exploit and modifying it for container escapes.
Idea is basically that Linux namespaces prevent the original technique to find the exploit process. Also, we have to modify more objects in the task structure to get a view to the host's filesystem and restore capabilities.
But read for yourself.
https://www.crowdstrike.com/blog/exploiting-cve-2021-3490-for-container-escapes/
18.1.2023 19:59Small blog by me about using @chompie1337 's late eBPF exploit and modifying it for container escapes. Idea is basically that Linux...