noexec

From Kicksecure
Revision as of 20:55, 9 November 2023 by Patrick (talk | contribs)
Jump to navigation Jump to search

Secure Mount Options for better Security Hardening

It is planned to mount the user's /home/user folder with noexec by default.

This is part of:

This will supplemented this at a later time:

The goal of all of this is that it becomes harder for a Linux user account that might have been compromised by malware to compromise other Linux user accounts or VM escape. This will because malware running under a non-root user won't have access to create and run new binaries, use compilers or code interpreters as well as having less access to SUID / SGID enabled binaries.

The policy of No Intentional User Freedom Restrictions remains in place as always.

Related

Footnotes

Notification image

We believe security software like Kicksecure needs to remain Open Source and independent. Would you help sustain and grow the project? Learn more about our 12 year success story and maybe DONATE!