memfd_secret() in 5.14
memfd_secret() in 5.14
Posted Aug 6, 2021 21:21 UTC (Fri) by khim (subscriber, #9252)In reply to: memfd_secret() in 5.14 by mb
Parent article: memfd_secret() in 5.14
> The data is gone.
But is it irrevocably gone?
I don't think you are supposed to keep your only copy of secret keys there.
If that's something like Netflix decryption key, though, then you, probably, can request another one from Netflix.
This may or may not be useful, but storing stuff in a hibernation file would just make the whole excercise pointless: why hide data from kernel if attacker can just request a hibernation and pull it from the file?
