3 ms·
Not everyone has root on their Linux box and even if you do, you ought to be able to install applications as you without sudo'ing anything. Right now most Linux
by rythie 11y ago
Not everyone has root on their Linux box and even if you do, you ought to be able to install applications as you without sudo'ing anything. Right now most Linux applications guide you to a deb/rpm which runs as root (and who knows if you can trust it).
TBH this is just the start of making applications more secure, they ought to be sandboxed too, so one application can't read the data from another application by default (similar to how phones work).
- matzipan 11y agoI believe Ubuntu has done a some progress in this area with Snap packages.
- jonotime 11y agoThere's also NIX, which I think does a good job of issolation in user space. https://nixos.org/nix/ https://nixos.org/nix/
- michaelmrose 11y agoYou actually cannot make malicious applications safe you can however make nonmalicious applications inconvenient.
- jhasse 11y agoGNOME is working on it: https://wiki.gnome.org/Projects/SandboxedApps https://wiki.gnome.org/Projects/SandboxedApps
- michaelmrose 11y agoYou can make it slightly harder to infect the rest of the system leaving the factual truth that the moment you install malware you are hosed unchanged
- chmike 11y agoWouldn't this raise the issue of application updates ? If the app imports its own libraries, who will take care to update them if a security issue is detected ? That's the point to enforce using shared libraries on unix system.