Gentoo Archives: gentoo-user

From: Rich Freeman <rich0@g.o>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] {OT} Allow work from home?
Date: Sat, 23 Jan 2016 18:15:22
Message-Id: CAGfcS_mag3KKDs3uCR7eZ74xsZiNWTetOKG2PnX2TQ6nsCS1LQ@mail.gmail.com
In Reply to: Re: [gentoo-user] {OT} Allow work from home? by Mick
1 On Sat, Jan 23, 2016 at 12:17 PM, Mick <michaelkintzios@×××××.com> wrote:
2 > I would have thought SSL certificates/keys would be protected in RAM, but if
3 > you have a Man-In-The-Browser attack I guess they wouldn't be.
4 >
5
6 As far as I'm aware linux doesn't do anything to protect process RAM
7 from other processes with the same UID, at least not without SELinux
8 and such. But, I could be wrong on that. I'd expect that malware
9 running under your uid or of course as root could read your browser's
10 RAM.
11
12 --
13 Rich