2 ms·
The problem here is that the file is being scanned without the user even attempting to run it. A similar vector would be file previews (thumbnails) or indexing.
by ecma_horse 9y ago
The problem here is that the file is being scanned without the user even attempting to run it. A similar vector would be file previews (thumbnails) or indexing.
If the user is about to execute a malicious file anyway, then scanning it before only adds protection.
- danieldk 9y agoThe problem is more that the standard model for applications is 'can access the whole filesystem, can write to the user's home directory'. The default model should change to sandboxing an application without any permissions.