3 ms·
Capabilities are strictly less secure than hard-coded permissions, because capabilities can be given away by confused deputies whereas fixed permissions cannot.
by nvm0n2 3y ago
Capabilities are strictly less secure than hard-coded permissions, because capabilities can be given away by confused deputies whereas fixed permissions cannot.
Capabilities also don't magically stop your app containing buffer overflows, SSO login problems, they don't make your users phishing-proof and in general they don't do a lot of anything. They're a useful API pattern that every OS already provides and has done for decades, but they're very far from a silver bullet.