By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Linux’s Lockdown LSM Back To Being Maintained For Restricted Computing
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Computing > Linux’s Lockdown LSM Back To Being Maintained For Restricted Computing
Computing

Linux’s Lockdown LSM Back To Being Maintained For Restricted Computing

News Room
Last updated: 2025/07/31 at 6:36 AM
News Room Published 31 July 2025
Share
SHARE

Upstreamed to the Linux kernel back in 2019 was the Lockdown security module for opt-in hardware/kernel security restrictions. It was a difficult and contentious process getting to the Linux kernel but then was left without any formal maintainer shortly after being mainlined. Now for helping to renew this Linux security module, two developers have stepped up to takeover maintainership of Lockdown.

Since Lockdown was mainlined six years ago, attack vectors have emerged and bypass bugs for this security module typically paired with UEFI Secure Boot to help fend off any unauthorized or unintended modifications to the running kernel image. Lockdown-protected environments restrict direct access to the likes of /dev/mem and other interfaces as well as features like BPF. Lockdown also blocks various kernel module parameters that affect hardware behavior, prohibits direct PCI BAR access, modifying of x86 MSR registers, and more. Thankfully there are now two maintainers taking over the stewardship of Lockdown for those wishing to run in this locked-down Linux environment.

Xiu Jianfeng of Huawei and Nicolas Bouchinet of the government of France have stepped up to maintain Lockdown in the upstream kernel.

Lockdown maintainers

The Lockdown merge to Linux 6.17 explains:

“Add Nicolas Bouchinet and Xiu Jianfeng as Lockdown maintainers

The Lockdown LSM has been without a dedicated mantainer since its original acceptance upstream, and it has suffered as a result. Thankfully we have two new volunteers who together I believe have the background and desire to help ensure Lockdown is properly supported.”

Here’s to the continued success of Lockdown moving forward.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Best Instant Camera 2025: Our top picks for instant photography
Next Article Micron 9650 ssd, the first gen6
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

CIC commits £100m to back local university spinouts – UKTN
News
The Best Projectors We’ve Tested for 2025
News
The 41 best back-to-school laptop deals on MacBooks, Chromebooks, and more
News
Ground cell towers could soon be replaced with something up in the air (not a satellite)
News

You Might also Like

Computing

👨🏿‍🚀 Daily – Your data, in your hands |

3 Min Read
Computing

The HackerNoon Newsletter: Why GitHub Commits Aren’t as Private as You Think (7/31/2025) | HackerNoon

2 Min Read
Computing

Intel XeSS 2.1 Released With Frame Generation For Non-Intel GPUs But Still A Binary Mess

2 Min Read
Computing

PEPETO, The Real PEPE Crypto Price Prediction: Could PEPETO Gain 20,000% In The Next Run? | HackerNoon

5 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?