this post was submitted on 08 Nov 2024
60 points (96.9% liked)

Cybersecurity

5683 readers
68 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !cybersecurity@lemmy.capebreton.social !securitynews@infosec.pub !netsec@links.hackliberty.org !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] quoll@lemmy.sdf.org 12 points 1 week ago (3 children)

with the amount of effort that goes into tooling on tooling on tooling wrapped in tooling we subject ourselves to, you would think we could come up with a secure-ish execution environment for all the random shit we run :\

[–] Vendetta9076@sh.itjust.works 3 points 6 days ago (1 children)

We had one. Its called VMs. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter.

[–] quoll@lemmy.sdf.org 2 points 6 days ago (1 children)

VM's aren't great for development. The performance is poor and the DX is a pita so devs do dumb shit like mount their keys or entire home directory inside it negating the security benefits.

Thinking more along the lines of firejail seamlessly integrated with pip/venv/nvm/composer/whatever.

I think deno has greatly improved security sandboxing?

But yea you are 100% correct... It's always going to be a never ending arms race. The status quo is just ridiculous.

[–] Vendetta9076@sh.itjust.works 1 points 6 days ago

You're entirely correct. The Status quo sucks ass

load more comments (1 replies)