3 ms·
Unfortunately, real apps and native tech stacks can not only write data to your SSD, they can usually write data to the user directory however they want and the
by VMG 4mo ago
Unfortunately, real apps and native tech stacks can not only write data to your SSD, they can usually write data to the user directory however they want and they can read it as well!
Browsers are at least somewhat sandboxed
- hollerith 4mo agoThis is a Linux-centric take. It does not apply for example to iPadOS or to AluminiumOS (coming soon to a Googlebook near you). It applies less and less over time to MacOS. Yes, if one is committed to the standard Linux desktop, then one must hope that any proprietary apps one might need will continue to be available through the browser, but I'm ready to let the standard Linux desktop go (not right now, but eventually).
- lxgr 4mo agoIt very much applies to macOS, or do you know of a way to know what permissions a sideloaded macOS application will have before opening it that's accessible to regular users?
- hollerith 4mo agoThe very fact that you've qualified your question with "sideloaded" suggests that you are already aware that a non-sideloaded MacOS app is installed into a sandbox that is much more secure than anything available on a standard Linux desktop excepting possibly Qubes and Secureblue, and hardly anyone uses Qubes or Secureblue -- probably for very good reasons.
- lxgr 4mo agoYes, and I'm also aware that most macOS apps are still only available as a sideload, where sandboxing is optional and importantly not user visible before the app runs.
- rayiner 4mo agoBut you need relatively few native apps with those capabilities, in contrast to visiting many different websites for content consumption.
- MisterTea 4mo agoWhy not sandbox the process then?
- VMG 4mo agoI don't know, maybe something about backwards compatibility, maybe nobody can agree on how to do it correctly. It hasn't happened for decades, so I'm not going to hold my breath.
- lxgr 4mo agoSure, can you propose an equally mature and battle-tested sandbox, ideally one with multiple implementations on a wide variety of OSes?