Skip to main content

Questions tagged [sandbox]

A sandbox is a security mechanism for containing and restricting untrusted programs. Such programs could contain malicious code, which would otherwise harm the user's system.

6 votes
3 answers
1k views

I'm currently running GrapheneOS on a Pixel 6a, and I have installed several alternative keyboards from F-Droid and the Play Store. How isolated are keyboards in Android? When I enable a keyboard in ...
Ender Wiggin's user avatar
0 votes
1 answer
251 views

A case here: https://www.virustotal.com/gui/file/416b4499cd364f8d645e7bcd591ca4ac71ad1227e4a888c7f1d49e90445e07e2/behavior You can get the file I uploaded here (POSTNTFS.EXE inside the zip file): ...
Joshua's user avatar
  • 1,300
1 vote
1 answer
89 views

The use case is: running isolated services, either as a hardened systemd unit file -- with close to a zero score on systemd-analyze security, or a linux container. Both of those will place services ...
gcb's user avatar
  • 355
1 vote
0 answers
63 views

I'm analyzing a system where services are isolated via QEMU. For storage, it gives each guest access to their own block device/partition on the host (for performance reasons). I'm wondering if this ...
PhilipRoman's user avatar
2 votes
1 answer
390 views

My host is Fedora, and I want to add an extra layer of protection against 0day KVM/QEMU exploits that execute code on the host. For example there have been CVEs where if we run a specially crafted ...
OneAndOnly's user avatar
3 votes
0 answers
811 views

You'll see stuff like the first comment here that adding the --no-sandbox flag when launching puppeteer "is a giant security hole" (upvoted many times). Puppeteer troubleshooting docs say &...
Lance Pollard's user avatar
1 vote
1 answer
188 views

As I understand it, a sandbox is an isolated environment on a machine, used to protect the host from the programs in the sandbox. Is there something similar but in reverse, for running important ...
De kot's user avatar
  • 11
0 votes
1 answer
2k views

I need to download certain files from Telegram. It is mostly images and videos. I am aware that even this kind of files can contain malicious code, so I want to be 100% safe. (The files usually ...
Martin L's user avatar
  • 103
0 votes
2 answers
347 views

Following on to questions like Sandbox for attachment accessment and How do I safely inspect a suspicious email attachment?. Why don't we sandbox email clients company-wide? I must be missing ...
Danny Schoemann's user avatar
0 votes
0 answers
306 views

I am aware of a website that I suspect is, at the very least, pulling user data from visitors and possibly performing other malicious activity on visitors. Of course, the safest course of action is to ...
Evan Leahy's user avatar
0 votes
0 answers
180 views

I am writing an online judge so I need to sandbox execution of untrusted binaries for judging and for that, I am using apparmor. Here's my current simple profile: #include <tunables/global> ...
Saad Ahmed's user avatar
3 votes
1 answer
13k views

Im using Windows 11 Pro. It has a feature called "Windows Sandbox", which is basically a virtual machine. If im getting a Virus inside of this sandbox, is it possible for that Virus to ...
user avatar
1 vote
0 answers
154 views

I would like to use AWS Lambda to run solutions to programming problems for an online courses website. So far, I use simple eval in my lambda function. However, many posts (e.g. this and this) suggest ...
AlwaysLearning's user avatar
0 votes
1 answer
455 views

First, I'm a complete beginner, my only experience in malware is running windows defender lol. But I will try my best to learn anything that you guys recommend. My younger brother keeps downloading ...
you dont need to know this's user avatar
1 vote
0 answers
296 views

I am using singularity sandboxes in my workflow for several reasons unrelated to security. However, after using it a bit, I am now wondering: is using a singularity sandbox an effective way to ...
Zorglub29's user avatar
  • 339

15 30 50 per page
1
2 3 4 5
15