abs(in)the<p>Given that sophisticated <a href="https://mastodon.sdf.org/tags/infostealer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infostealer</span></a> <a href="https://mastodon.sdf.org/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> increasingly includes checks to avoid detection by shutting down if it detects it is on a virtualised host...</p><p>What is the security vs convenience+performance tradeoff for running a primary work environment inside a virtualised guest?</p><p>Or... is there actually a (small) security benefit by running a kernel shim to make your real environment appear to be virtualised?</p><p>random <a href="https://mastodon.sdf.org/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> thought for the day</p>