Comment on Silverblue or other immutable on remote VPS?

<- View Parent
myersguy@lemmy.simpl.website ⁨2⁩ ⁨months⁩ ago

An attacker escaping from a container can’t be system root as Podman runs rootless (without some other exploit or weak password).

That would be true of podman running anywhere, and is not unique to an immutable distribution. This is also clearly not what they are talking about.

The filesystem itself is also read-only.

You can change that real quick if you have root access.

source
Sort:hotnewtop