Finally, we are seeing more applications pushing chunks of themselves into sandboxed sub-processes.
Now if only there was a nice open-source, cross-platform way to do this..... hint..... hint......
:-)
Now if only there was a nice open-source, cross-platform way to do this..... hint..... hint......
:-)
Only Apple can provide the described security for their messenger, but other messengers which face similar challenges (rendering untrusted content) cannot protect themselves.
(a) create a sandboxed child process with some code inside it (b) talk to that sandboxed child process (e.g. Firefox and Chrome both have IPC libraries) (c) handle the resulting crashes nicely, restarting child process when necessary