We already have all these permission layers too. SELinux and Windows NT have existed for a long time.
So has macOS. It’s just a matter that the agents don’t bother to use the existing permission layers.
So all we need to do is get malware to play by the rules. :)
So all we need to do is get malware to play by the rules. :)