I'm on the record saying the AV industry needs to take attacks against (or leveraging) AV more seriously, but I think things there are some differences with browsers:
-
-
Yes, incentives. I sometimes wish a company would see its profits drop every time you reported a vulnerability That would change things a lot.
-
I wish there were a Pwn2own for anti-virus software. That's a great artificial incentive.
- 12 more replies
New conversation -
-
-
Excuse my horrible ignorance but don't efficient file system scanners typically need block level read access?
-
Maybe? But it's the bit that does the complex file format parsing that needs to be sandboxed, not the bit that does the fs access (IMO you'd probably want to keep that outside the sandbox)
- 2 more replies
New conversation -
-
-
AV vendors usually say: sandboxing means performance impact, they have legacy code they can't sandbox and most end-users are not interested in this (and paying the costs involved with the upgrade). I am not here to judge if these are excuses or not
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Running as root/admin means you’re important. Who doesn’t want to be important?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.