Summary#
Learn how to sandbox untrusted software, from AI agents, to development stacks with the potencial to be vulnerable to supply chain attacks. We cover container hardening, Landlock rulesets, Seccomp BPF profiles, firewall rules, DNS allowlists, and CVE scanning and vulnerability management.
