View Full Version : Sandboxes podcas
Meriadoc
September 8th, 2006, 06:33 AM
Steve Gibson talks about sudo virtualization 'lighter weight' application sandboxing such as Sandboxie, Greenborder... and some I havent seen stating you cannot trust them for security only privacy.
http://www.grc.com/SecurityNow.htm#55
-{ Quote: "for privacy protection I like it, so not to leave a trace on someones machine but for security they are prone to error and cannot be trusted, they claim things that aint true, trust none of these for security. For industrial strength I'd choose vmplayer, vmware..." }-
TNT
September 8th, 2006, 06:51 AM
-{ Quote: "Steve Gibson talks about sudo virtualization 'lighter weight' application sandboxing such as Sandboxie, Greenborder... and some I havent seen stating you cannot trust them for security only privacy.
http://www.grc.com/SecurityNow.htm#55" }-Well for one thing, I think Gibson is somewhat inaccurate here; it might be that you can't fully trust them for security (isn't that true for any program?), but sure some of the programs he mentions are not "for privacy". Take Sandboxie: it doesn't protect applications from reading, only from writing to the "true" OS folders (there's a rather obscure method to deny reading from certain folders in the configuration files, but it's certainly not the primary scope of Sandboxie). Also:
-{ Quote: "But for the purpose of privacy protection, I really like this because it’s lightweight, it’s easily portable, it would allow you to use someone’s computer with complete confidence that, once you’re done, you have left absolutely no trace behind." }-He's gotta be kidding. Unless you delete the sandbox contents with something like Eraser, one can easily recover the files that were in the sandbox with any "undelete" programs found on the web.
Meriadoc
September 8th, 2006, 07:25 AM
-{ Quote: "Steve Gibson talks about sudo virtualization 'lighter weight' application sandboxing" }-
I thought it abit unfare to group these type of programs together and only really talk about one, namely 'Sandboxie.'
typical SG rant
another comment...
-{ Quote: "I mean – oh, these things also say that they, you know, are protection from keystroke loggers. Well, I mean, that just makes me roll my eyes. I mean..." }-
vBulletin® Copyright ©2000-2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums