how to protect apparmor itself

hello, everyone,

recently I am interesting at apparmor, and I have read some docs of it, but I have a question that how to protect apparmor itself? I mean only if gained root privilege then stop apparmor service, all the protection will no longer effect, if I hiding or remove root user then how to remodify
profiles if needed that because have not enough privilege.

Is there apparmor maillist? maybe you can email me: <email removed for obvious reasons>
thank you.

Short answer is that if a malcontent gains root access he owns the machine period. Turning off apparmor is about the least he can do. Also note that anyone with physical access can own the machine if they have the knowledge.