Slide 13
Slide 13 text
capability
パッケージ の行う特権的操作
■ 以下の12種類が検出の対象
13
CAPABILITY_FILES
CAPABILITY_NETWORK
CAPABILITY_RUNTIME
CAPABILITY_CGO
CAPABILITY_EXEC
CAPABILITY_READ_SYSTEM_STATE
CAPABILITY_MODIFY_SYSTEM_STATE
CAPABILITY_OPERATING_SYSTEM
CAPABILITY_SYSTEM_CALLS
CAPABILITY_UNSAFE_POINTER
CAPABILITY_REFLECT CAPABILITY_ARBITRARY_EXECUTION