Hacker News new | ask | show | jobs
by kworker 2935 days ago
On linux you can use firejail if it's necessary (or a container if it's needed).
1 comments

This doesn't address what they just said - dropping privileges incrementally. Firejail is just a whole process filter applied at process start.