Hacker News new | ask | show | jobs
by nn3 4412 days ago
The exploits today are written for admin-rights account, because most people use that. But I'm sure there are plenty of non-admin->admin holes too. If running as non admin became wide spread the exploits would just need to add an additional step to become admin after they exploited the non admin user. Thus would be a short term improvement at best.