Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

People neglected the fact that having $HOME access was already bad enough and lived in the illusion that running applications as normal user was safe.


Why is having a home directory bad?


Any application running under the user id has full access to his private data.

Add the capability to do network communication and suddenly the all wolrd has access to $ HOME.

This is why in the container model of mobile OS and Windows/Mac OS X sandboxes, applications only get to see file handles to files choosen by the user.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: