3 ms·
>you've still got a rogue program on your comp. That's the default case, because any program that has bugs and takes foreign data has to be considered untruste
by conceit 11y ago
>you've still got a rogue program on your comp.
That's the default case, because any program that has bugs and takes foreign data has to be considered untrusted.
>All the security posts I've ever read have pretty much told me that once you're running a malicious program, then it's game over
Well, isn't that because of gaping holes like in the X11 design besides any bugs?
> anything short of isolating whole applications from each other at the hypervisor-level, is fussing about the wrong thing IMHO.
Unless it has bugs, too. (And if it doesn't because it is simple enough, it will evolve to send mail and eventually get bugs, or the applications are just monoliths that can't be well hypervised)