Also shows you how hard it is to build secure systems, you have to be perfect and the attacker only has to be persistent and succeed once.
Original Link
http://www.vanityfair.com/news/2016/11/how-bill-marczak-spyw...
If one becomes root in a docker container, the worst damage it can do is to that container's files. That is better the current "sandboxing" in iOS/Android setup, true?