| It is clear that Apple's current sandboxing is not perfect, but what could be done? The goal is to create the most secure running environment that is possible. Allowing random apps to access/modify different files on the system (without user explicitly allowing that) kinda defeats the purpose of sandboxing (from user's point of view - from developers POV, sandboxing makes his app more secure and stable). All I see is people ranting about sandboxing's limitations, without coming up with actual plans to improve it. |