Hacker News new | past | comments | ask | show | jobs | submit login

Safari uses APIs to protect its data directory that isn’t made available to third-party apps.



And those aren't good enough as he was able to bypass them with ls - command line tool ran without privilege inside of a sandboxed app.

This is a serious issue for data leakage.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: