logoalt Hacker News

etatester • yesterday at 8:39 PM • 2 replies • view on HN

Please do. Too many applications have too much access. Why do people not realize they installed literal Trojan horses that visit websites and execute commands found on them (prompt injection)?


Replies

spaqin • today at 6:36 AM

Accessing any website is basically Remote Code Execution, but for some reason starting up a browser isn't a CVE.

➕ show 1 reply
troupo • today at 3:50 AM

Because that's how computers have worked and should work forever? Without a corporate unerlord randomly restricting access to useful functionality and without inane permission popups for every action?

Edit yes, you'd want proper sandboxes for software. Yet Apple's approach is "pay us 100 dollars a year for software signing and sandboxing" which is not what we want