Runtime integrity guard: detect and block Linux page cache tampering (Copy Fail, Dirty Pipe, Dirty Frag) via O_DIRECT + fanotify. Includes 7 host-side exploitation PoCs.
privilege-escalation page-cache suid linux-security kernel-exploit o-direct container-security fanotify runtime-protection cve-2022-0847 dirty-pipe cve-2026-31431 copy-fail dirty-frag cve-2026-43284 cve-2026-43500
-
Updated
May 11, 2026 - Python