ModuleJail Blocks Unused Linux Kernel Modules to Limit Attack Surface (opens in new tab)
ModuleJail is a new project that blacklists unused Linux kernel modules, helping reduce the attack surface exposed by recent local privilege escalation flaws.
Read the original article