sane users don't run compilers with superuser privileges

๐ŸŽ™๏ธ ProgVal ยท 36 points ยท Posted at 19:21:22 on July 21, 2022 ยท (Permalink)


Saved comment

R_Sholes ยท 38 points ยท Posted at 00:19:58 on July 22, 2022 ยท (Permalink)

... and insane users run compilers in ring 0 as God intended.

i_like_cilantro ยท 23 points ยท Posted at 00:41:54 on July 22, 2022 ยท (Permalink)

Are you the ghost of Terry Davis?

DigitalRestrictionsM ยท 15 points ยท Posted at 05:27:19 on July 22, 2022 ยท (Permalink)

Did you mean: Ring -3? (E.g. Intel ME)

AAABBBp12 ยท 1 points ยท Posted at 19:23:11 on August 5, 2022 ยท (Permalink)

What are -1 and -2 ?

CdRReddit ยท 1 points ยท Posted at 21:25:20 on August 13, 2022 ยท (Permalink)

hypervisor and system management mode, apparently

[deleted] ยท 30 points ยท Posted at 20:54:19 on July 21, 2022 ยท (Permalink)

Bullshit. I run as root daily.

This includes when I have 20+ tabs open, some of which are ad infested programming blogs.

Kotauskas ยท 24 points ยท Posted at 03:17:37 on July 22, 2022 ยท (Permalink)

Sane OSes don't have god mode switches that you have to enable all the way whenever a program needs a bit more privileges than it usually has

NonDairyYandere ยท 33 points ยท Posted at 03:50:04 on July 22, 2022 ยท (Permalink)

Forgive me, Linus, I must use 10% of my strength

irqlnotdispatchlevel ยท 17 points ยท Posted at 06:32:10 on July 22, 2022 ยท (Permalink)

Found the Fuchsia user.

Kotauskas ยท 15 points ยท Posted at 07:36:23 on July 22, 2022 ยท (Permalink)

1 capabillion units sold #PermissionSystemSweep

gvozden_celik ยท 19 points ยท Posted at 07:24:36 on July 22, 2022 ยท (Permalink)

Can't even get Estudio Visual de Microsoft to attach a debugger to your local IIS without starting it as admin, and this is all from single company what made the compuler, the framework, the IDE, the debugger, the web server and the OS!

myhf ยท 11 points ยท Posted at 20:39:05 on July 21, 2022 ยท (Permalink)

Hmm, I think this kind of situation where a script inadvertently deletes /dev/null and then re-creates it as a regular file, would explain some weird behavior I was seeing in an Airflow pod.

NonDairyYandere ยท 8 points ยท Posted at 03:50:50 on July 22, 2022 ยท (Permalink)

there is now a common situation where we can expect users to run about anything as root: docker.

/uj Can you really delete /dev/null from inside a Docker container? Is that only if you mount the real /dev in the container? If so, why would you give a container access to the whole rootfs?

eambertide ยท 2 points ยท Posted at 23:26:06 on July 24, 2022 ยท (Permalink)

Uh, using containers are for cowards, if you are going to run something on your computer, run it directly! Or even better, port it to run standalone, burn it to a floppy and boot to it directly.