|
|
|
|
|
by AstralStorm
3394 days ago
|
|
SELinux is not that strong. It works on kernel syscall boundaries and some parameters thereof, and those aren't particularly fine grained. Service access is governed by a separate Google API, for example. Moreover, any random app cannot enhance SELinux policy of the system. |
|