I would say white listing will have to happen for everything in the near future: applications, ports, URLs (including fragments!), filesystem hierarchies, basically everything.
I'm not sure it's doable with current OS architectures, though.
Isn't the model of AppArmor or SELinux a good approach to tackle this problem?
Isn't the model of AppArmor or SELinux a good approach to tackle this problem?