• ozymandias117@lemmy.worldEnglish
    11·
    3 months ago

    If the executable binary has to be signed with a key, similar to the module signing key, Microsoft could sign their binaries

    This, along with secureboot, would prevent the owner of the machine from running eBPF programs Microsoft doesn’t want you to run, even with root

    • Magiilaro@feddit.org
      8·
      3 months ago

      Yeah, that’s why I am against Microsoft Keys on my systems

      • lumony@lemmings.worldEnglish
        7·
        3 months ago

        Odds are because there isn’t one.

        Abusers will always try to justify their abuse by saying their victims “don’t understand” why it’s “necessary.”

      • ozymandias117@lemmy.worldEnglish
        5·
        3 months ago

        I wasn’t trying to give a positive side, I was just explaining why Microsoft wants the feature