Re: [SC-L] Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code

2006-04-03 Thread Crispin Cowan
Dinis Cruz wrote: Jeff Williams wrote: I'm a huge fan of sandboxes, but Dinis is right, the market hasn't really gotten there yet. No question that it would help if it was possible to run complex software like a browser inside a sandbox that restricted its ability to do bad things, even if

Re: [SC-L] Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code

2006-04-03 Thread Pascal Meunier
AppArmor sounds like an excellent alternative to creating a VMWare image for every application you want to run but distrust, although I can think of cases where a VMWare image would be safer. For example, the installer/uninstaller may have vulnerabilities, may be dirty (it causes problems by