Language Selection

English French German Italian Portuguese Spanish

The Linux Security Circus: On GUI isolation

Filed under
Linux

There certainly is one thing that most Linux users don't realize about their Linux systems... this is the lack of GUI-level isolation, and how it essentially nullifies all the desktop security.

So, let me stress this one more time: if you have two GUI applications, e.g. an OpenOffice Word Processor, and a stupid Tetris game, both of which granted access to your screen (your X server), then there is no isolation between those two apps. Even if they run as different user accounts! Even if they are somehow sandboxed by SELinux or whatever! None, zero, null, nil!

The X server architecture, designed long time ago by some happy hippies who just thought all the people apps are good and non-malicious, simply allows any GUI application to control any other one.

rest here




More in Tux Machines

Today in Techrights

Fedora 26 Linux Might Ship with an LXQt Flavor, Won't Replace the LXDE Spin

There's a new self-contained change planned for the upcoming Fedora 26 Linux distribution, due for release on June 6, 2017, namely a new flavor built around the lightweight, Qt-based LXQt desktop environment. Read more

Devil-Linux 1.8.0 to Be a Major Overhaul, Will Use SquashFS as Main File System

It's been seven months since we last heard something from the developers of the Devil-Linux project, which produces a tiny, dedicated server distribution for many applications, and a new development version of the upcoming 1.8 stable series is out. Read more

CentOS vs Ubuntu: Which one is better for a server

Finally decided to get a VPS but can’t decide which Linux distro to use? We’ve all been there. The choice may even be overwhelming, even for Linux distros, considering all the different flavors and distros that are out there. Though, the two most widely used and most popular server distros are CentOS and Ubuntu. This is the main dilemma among admins, both beginners and professionals. Having experience with both (and more) distros, we decided to do a comparison of CentOS and Ubuntu when used for a server. Read more