disabling CPU MSRs breaks CPU temperature control
|
|
2
|
655
|
October 20, 2020
|
(re-)mount home [and other?] with noexec (and nosuid [among other useful mount options]) for better security?
|
|
67
|
2836
|
October 16, 2020
|
Dealing with File System Timestamps
|
|
2
|
670
|
October 15, 2020
|
Ship or Document DDoS Resistant torrc Settings
|
|
1
|
706
|
October 13, 2020
|
kernel built-in RAM memory test - parameter memtest=1 - enable by default?
|
|
1
|
1117
|
October 13, 2020
|
Install memlockd by default? (daemon to increase system reliablity during low RAM)
|
|
1
|
649
|
October 6, 2020
|
[Second Revision] Clock Drift Correction Proposal
|
|
0
|
536
|
August 22, 2020
|
Tor Connection Padding
|
|
20
|
1704
|
August 14, 2020
|
Whonix Host - Live / Persistent Boot - looking for good product name
|
|
13
|
1407
|
August 10, 2020
|
multiple boot modes for better security: persistent user | live user | persistent secureadmin | persistent superadmin | persistent recovery mode
|
|
50
|
2766
|
July 5, 2020
|
rootkit detection system - AIDE
|
|
14
|
770
|
June 17, 2020
|
Virtualization Based Hardening (VBH) - Intel / Bitdefender
|
|
3
|
790
|
June 15, 2020
|
Stackable Wrappers
|
|
11
|
892
|
May 30, 2020
|
Whonix-Host Firewall
|
|
6
|
917
|
May 24, 2020
|
Nested virtualization unbearably slow on Whonix-Host (KVM)
|
|
1
|
726
|
May 19, 2020
|
Whonix-Host: chainboot /boot/grub/grub.cfg to keep Whonix-Host ISO kernel boot parameters synchronized with Whonix-Host Installed
|
|
0
|
607
|
May 17, 2020
|
Kicksecure Network Configuration
|
|
61
|
1595
|
April 23, 2020
|
disable newly (all) installed services by default
|
|
0
|
725
|
April 19, 2020
|
Selecting Secure Packages from packages.debian.org
|
|
23
|
1187
|
April 6, 2020
|
Printer yellow dots anonymization
|
|
1
|
595
|
March 9, 2020
|
run OpenSCAP security test
|
|
1
|
707
|
March 7, 2020
|
DISA STIG (Security Technical Implementation Guides) Audit Tool for Debian
|
|
6
|
1067
|
February 26, 2020
|
Do NTP and TCP timestamps really leak your local time?
|
|
10
|
1389
|
February 24, 2020
|
use kernel command line as a source of randomness
|
|
14
|
1119
|
February 22, 2020
|
/proc/pid/sched spy on keystrokes - proof of concept spy-gksu
|
|
0
|
992
|
September 27, 2019
|
early-rng-init-tools for better entropy?
|
|
3
|
898
|
February 16, 2020
|
kernel.deny_new_usb sysctl to deny new USB devices
|
|
9
|
861
|
February 15, 2020
|
Moar Entropy Sources
|
|
16
|
1131
|
February 3, 2020
|
Untrusted Root - improve Security by Restricting Root
|
|
29
|
2579
|
December 22, 2019
|
Hide Kernel Symbols for Better Security vs Reproducible Builds
|
|
12
|
942
|
December 21, 2019
|