azha@lemm.ee to linuxmemes@lemmy.worldEnglish · 2 months agoWe dont need onelemm.eeimagemessage-square94fedilinkarrow-up1702arrow-down159
arrow-up1643arrow-down1imageWe dont need onelemm.eeazha@lemm.ee to linuxmemes@lemmy.worldEnglish · 2 months agomessage-square94fedilink
minus-square🦄🦄🦄@feddit.orglinkfedilinkarrow-up1·2 months agoCan you elaborate? Wouldn’t malware need to install something which would not happen on an immutable?
minus-squareEnsignWashout@startrek.websitelinkfedilinkarrow-up3·2 months agoImmutable distros can usually be set to mutable with the correct privileged command. It’s essentially security by obscurity. But I disagree with “no benefit”. An infection miss through dumb luck is still a miss, after all.
minus-squarePossibly linux@lemmy.ziplinkfedilinkEnglisharrow-up1·2 months agoIf malware has root access it can do whatever it wants Things like SElinux and sandboxing is what secures systems.
Can you elaborate? Wouldn’t malware need to install something which would not happen on an immutable?
Immutable distros can usually be set to mutable with the correct privileged command.
It’s essentially security by obscurity. But I disagree with “no benefit”. An infection miss through dumb luck is still a miss, after all.
If malware has root access it can do whatever it wants
Things like SElinux and sandboxing is what secures systems.