thestinger
Security researcher/engineer working on mobile privacy/security. Founder of @GrapheneOS.
@GrapheneOSToronto, Ontario, Canada
Pinned Repositories
AttestationServer
attestation.app remote attestation server. Server code for use with the Auditor app: https://github.com/GrapheneOS/Auditor. It provides two services: submission of attestation data samples and a remote attestation implementation with email alerts to go along with the local implementation based on QR code scanning in the app.
Auditor
Hardware-based attestation / intrusion detection app for Android devices. It provides both local verification with another Android device via QR codes and optional scheduled server-based verification with support for alert emails. It uses hardware-backed keys and attestation support as the foundation and chains trust to the app for software checks.
hardened_malloc
Hardened allocator designed for modern systems. It has integration into Android's Bionic libc and can be used externally with musl and glibc as a dynamic library for use on other Linux-based platforms. It will gain more portability / integration over time.
linux-hardened
Minimal supplement to upstream Kernel Self Protection Project changes. Features already provided by SELinux + Yama and archs other than multiarch arm64 / x86_64 aren't in scope. Only tags have stable history. Shared IRC channel with KSPP: irc.freenode.net ##linux-hardened. Currently maintained at https://github.com/anthraxx/linux-hardened.
platform_manifest
Repo manifest for the GrapheneOS mobile privacy and security hardening project.
rust
Empowering everyone to build reliable and efficient software.
allocator
experimental high performance, low fragmentation memory allocator
playpen
A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubblewrap if you need more functionality
termite
Termite is obsoleted by Alacritty. Termite was a keyboard-centric VTE-based terminal, aimed at use within a window manager with tiling and/or tabbing support.
vte-ng
enhanced vte terminal widget
thestinger's Repositories
thestinger/termite
Termite is obsoleted by Alacritty. Termite was a keyboard-centric VTE-based terminal, aimed at use within a window manager with tiling and/or tabbing support.
thestinger/playpen
A secure application sandbox built with modern Linux sandboxing features - no longer actively developed, but still works fine, use bubblewrap if you need more functionality
thestinger/vte-ng
enhanced vte terminal widget
thestinger/allocator
experimental high performance, low fragmentation memory allocator
thestinger/paxd
PaX exception daemon - Temporarily abandoned due to the PaX and grsecurity patches becoming private
thestinger/hardening-wrapper
Wrapper scripts for building hardened executables by default (deprecated, replaced by standard Arch Linux toolchain changes)
thestinger/wiki
toy wiki implementation
thestinger/util
various utility functions and classes
thestinger/.github