Cool Things with SELinux: Introducing Sandbox -X

“One of the downsides of working in security is that we seldom get to do cool things. The desktop engineers, VM engineers, even kernel engineers get to show off cool stuff. But security guys usually only ever get to show how we broke something, if that. Sometimes all we can do is say ‘trust us, it’s working’. But I think I have something cool to show off which I’m calling sandbox -X.”

