4 ms·
I agree deeply, but I honestly think that approach of Android is the best here. Sandboxed to an app store by default, possible to enable 3rd party installations
by shittyadmin 8y ago
I agree deeply, but I honestly think that approach of Android is the best here. Sandboxed to an app store by default, possible to enable 3rd party installations by jumping through a few hoops and big warning boxes, much more difficult to gain real root access, but still possible on many devices via manufacturer-approved methods.
Prevents malicious apps like this from really mining their way into your devices but allows power users to have real control still.
- isostatic 8y agoAnd how does running apps in a container differ to this?
- shittyadmin 8y agoThe whole model for modern mobile OSes is based on running apps in containers, so they're one in the same essentially. Windows lacks such containerization for most desktop apps, they're trying to improve that model now with UWP but with limited success I'd say, the Windows world is largely stuck on desktop apps that have general access to everything just due to the history of it.
- isostatic 8y agoIf desiring containers are what the OP's assertion is about "Windows, Linux, and MacOS all have this problem because they don't run sandboxes by default. OSes should be redesigned to make it nearly impossible to install a rootkit" Isn't an OS problem, and requires no redesign (well no idea about Windows), it's just a choice of how to run their machine. Perhaps if OP believes that all apps should be containerised, but this doesn't need an OS to be redesigned, it just means a new skin. I could easily see a "Dockbuntu" which, instead of distributing programs like Firefox and spotify, distribute links to docker containers running those programs, where the user can choose which directories to mount into the application's container (and whether they should be readonly, readwrite, etc)