4 ms·
Unfortunately if you can read a configuration file in a user's home directory, you can also get local admin rights very easily via various simple exploits. Thi
by DethNinja 4y ago
Unfortunately if you can read a configuration file in a user's home directory, you can also get local admin rights very easily via various simple exploits.
This is why RCE type exploits are super dangerous.
There probably won't ever be a solution for this unless we get a completely rewritten Windows / Linux with pure security in mind.
I wonder if any VC would invest in a startup to build a secure OS.
- bollos 4y agoI’m all for more funding for OpenBSD. I doubt we would be able to really tackle the usability hindrance of security first though.
- somat 4y agoAs a huge openbsd aficionado I don't think openbsd is more secure than any other operating system, or more correctly speaking, I think openbsd definition of security is different than most peoples definition of security. If anything, by most peoples definition of security openbsd may be less secure. Most peoples definition of security is to have improved access control such that unauthorized access cannot happen. The openbsd definition of security is closer to "build it correctly so that it operates correctly". openbsd access control is actually fairly limited and rudimentary.