Mark Manning

@antitree.com

Process isolationist, k8s hacker, ᴎo-prem pusher, syscall denier, container liberator 🔸Xxx 🔸Rochester 2600, IOIOIO Security 🔸Former: chainguard, Snowflake, NCC Group, Hackerspace starter, BSidesROC Founder

Tomorrow is my last day at @chainguard.bsky.social Best company ever. I may kick myself for leaving but I will definitely kick myself if I don't try out the next opportunity. I've been a fan of this company from its inception. Marketing to 4-10 year olds in my neighborhood since 2023

Bild

I get very frustrated when feel like I can see a really different future of infosec and yet at the same time I'm fiddling with legacy paradigms and old thinking. There are two types of security teams right now, legacy and forward looking. Which teams have you seen that are turning the corner?

The irony that a k8s seccomp generation tool had an overly restritive seccomp policy _on itself_ causing it to crash and not generate seccomp profiles, is a fantastic example of the problem. Thanks.

A quick video of the current home of Rochester 2600. Thanks to Forrest. Not shown here: The earthquake button that simulates what it would be like working for a tech company in San Francisco.

I always exhaust myself putting together a talk and the cycles are always the same: * I have a good idea * Write out talk for idea * I hate my idea * Smash head against keyboard, write dozen new tools, hack previous slides to shambles, throw gibberish placeholders into a new deck * ... * Present

Seccomp container profile bypass: runc casts your seccomp's errnoRet to int16 before passing it to libseccomp. errnoRet=65536 > int16(0) > SCMP_ACT_ERRNO(0) > kernel returns 0 errors == syscall goes from blocked to allowed

NEW: For months, I’ve been working on the story of Peter Williams, the former U.S. defense contractor who stole several hacking tools and then sold them to a Russian broker. Here’s what we know about the case, what we still don’t know, and a peek behind the scenes at how I reported this story.

Inside the story of the US defense contractor who leaked hacking tools to Russia | TechCrunch

The former boss of a U.S. hacking tools maker was jailed for selling highly sensitive software exploits to a Russian broker. This is how we first learned of his arrest, reported the story, and some of...

techcrunch.com

My BSidesSF talk was accepted! I've always had a lot of respect for this con so I'm excited to be chosen. Details aren't out yet but I still get really psyched and nervous for talks like this. LFG

Good morning Vitamin D deficiency. Where's the Andrew Huberman protocol for when you haven't seen the sun in 3 months and your country is collapsing. Zinc?