DigiNews

Tech Watch by Johan Denoyer

← Back to articles

AF_ALG page-cache cross-container pivot: Part I

Quality: 8/10 Relevance: 9/10

Summary

A technical write-up on AF_ALG page-cache cross-container pivot in containerized Linux environments. It explains how overlayfs sharing between containers can allow a single container to corrupt the page cache in sibling containers, effectively creating a memory-based cross-container attack vector that bypasses normal filesystem write semantics, and describes a PoC and implications for secure container deployment.

🚀 Service construit par Johan Denoyer