Hacker News new | ask | show | jobs
by NewJazz 767 days ago
Uh... No.

We are always going to have much greater confidence in the security of the base OS than the security of random apps in the ecosystem.

You named some great applications that have seen a lot of scrutiny... But what if someone installs a malicious gimp plugin, or wants to use a closed source app like discord? Your argument falls apart quickly.

1 comments

> We are always going to have much greater confidence in the security of the base OS than the security of random apps in the ecosystem.

Where exactly is that true? Certainly not on mobile. There's a reason why I don't put anything sensitive on it...

And on Linux I'd say it's about the same for both.

For closed source apps I agree with that and something like snap/flatpack is maybe a better model for them.

On mobile, CalyxOS and GrapheneOS see a lot more attention than say, Breezy Weather.

On workstations, glibc and coreutils see a lot more attention than e.g. xonotic.