|
|
|
|
|
by Ochi
3 days ago
|
|
I'm running OpenSnitch on my desktop machine to get notified about any attempted outgoing network connections by processes that I have not explicitly allowed before. I wonder if this would have at least prevented any data exfiltration if I would have installed one of the infected packages? I'm thinking more and more that things like sandboxing and compartmentalization are becoming increasingly important on everyday desktop machines. The design of every process having at least read access to almost everything on a machine by default is not appropriate anymore. |
|