• Toes♀@ani.social
      link
      fedilink
      English
      arrow-up
      2
      ·
      26 days ago

      Just a heads up some of those old drivers are just encapsulated perl scripts with root access. Easy network target for bad actors.

      • tal@lemmy.today
        link
        fedilink
        English
        arrow-up
        1
        ·
        25 days ago

        Interesting. I wonder if it’d be practical to containerize them by default.

          • tal@lemmy.today
            link
            fedilink
            English
            arrow-up
            1
            ·
            25 days ago

            I mean, you can use something like the lightweight containers generated by firejail, where the program just lacks write permission to the filesystem or network access, stuff like that.