Activate default security enhancements for toolchain (gcc, glibc, binutils)
Package | “hardened” Flag Description |
---|---|
sci-libs/libqalculate | Disable unsafe functions like 'command' and variables like 'uptime'. |
dev-libs/mimalloc | Enable exploit mitigations |
sys-kernel/gentoo-kernel | Use selection of hardening options recommended by Kernel Self Protection Project |