Blog
Notes sur la sécurité embarquée, le durcissement noyau et la conformité réglementaire.

September 4, 2025 · 12 min de lecture
Secure Remote Access with Yocto
Why exposing root over SSH for field debugging is a bad idea, and how to replace it with SSH certificates, a restricted account and sudo on Yocto.
Lire la suite →
August 4, 2025 · 10 min de lecture
Efficient Management of CVEs with Yocto
Generating an SBoM and CVE summary with Yocto's cve-check, filtering out irrelevant Linux kernel CVEs, and annotating what's left with Vulnscout.
Lire la suite →
January 5, 2025 · 15 min de lecture
Linux Kernel Hardening
How to properly configure the Linux kernel: five configuration mechanisms, the kernel-hardening-checker tool, command-line hardening and a full sysctl hardening reference for embedded systems.
Lire la suite →