• Toes♀@ani.social
    link
    fedilink
    English
    arrow-up
    21
    arrow-down
    1
    ·
    1 day ago

    Just a heads up some of those old drivers are just encapsulated perl scripts with root access. Easy network target for bad actors.

    • tal@lemmy.today
      link
      fedilink
      English
      arrow-up
      3
      ·
      17 hours ago

      Interesting. I wonder if it’d be practical to containerize them by default.

        • tal@lemmy.today
          link
          fedilink
          English
          arrow-up
          1
          ·
          4 hours ago

          I mean, you can use something like the lightweight containers generated by firejail, where the program just lacks write permission to the filesystem or network access, stuff like that.