Totally unrealistic. Think: "do you want to install this program? Yes/No?" Security is more than memory corruption exploits prevention...
the whole point of PaX is that you *can* click any OK button without getting owned. not there yet but close :).
5
16
33
and PaX is more than memory corruption prevention. think grsec, sandboxes, etc. it's just not me who does all the work ;).
1
3
Do you really think you can solve the "user can click anything" problem, while still offering general purpose computing?
1
sure, that's the whole raison d'etre of my work.
3
2
kernel hardening is mandatory but at one point you need userspace work too
1
Replying to @Evil_X_ @rootkovska
size overflow, RAP, etc work in userland too and we're not done yet ;).

Oct 1, 2016 · 6:13 PM UTC

1