Tuesday, November 17 • 15:55 - 16:40
Container torture: run any binary in any running container. 0 patch.

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Running a container app in the container is easy, attaching a custom app to a running container is a bit trickier. But, what if I wanted to run any arbitrary binary in any arbitrary running container? Common wisdom says it's impossible. Is it ? This talk dives into containers internals, just above the kernel surface and demonstrates that this is, indeed possible. With a bit of C magic and ptrace.

avatar for Jean-Tiare Le Bigot

Jean-Tiare Le Bigot

System Developer, OVH
Jean-Tiare Le Bigot leads Sailabove Docker hosting project. On his spare time, he loves digging under the hood and writes about his findings. He strongly believes that simple isbeautiful.Jean-Tiare tweets at @oyadutaf... Read More →

Tuesday November 17, 2015 15:55 - 16:40 CET
Level 1, Room 111

Attendees (0)