Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

a locked down machine that lets code run from places users can write? how pointless


Reminds me of how i used to run Minecraft on a school computer trough this software on a USB stick i brought to school. Good times.

You can do similar things on Linux as well, but there it is easy to fix by setting `noexec` on /home.


A more accurate way of saying it is "machines you don't have admin rights on". As a standard user, you can still run pretty much anything from anywhere. There are ways to lock this down, of course.


Good luck shipping a machine in 2022 that either

(a) doesn't have a Web browser, or

(b) has some way to ensure the code it's running is not from a site where the user wrote all (or even just some) of it


That's sandboxed though, for a reason




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: