|
|
|
|
|
by LennyWhiteJr
1756 days ago
|
|
It has nothing to do with 'trusting them' and everything to do with the threat model because it significantly increases the attack surface area. Just because I want to grant system access to a relatively simply USB driver doesn't mean I want to grant the same access to a 150MB UI app. |
|
If I were attacking the system along this vector, my exploit would sit in the USB driver, not the UI code.