Selinux should help with this, but by default all ’non-server’ apps can just access anything across the user’s home. Maybe I should look into this. Hmmmm.
Comment on Steam removes horror game after malware steals player data
Corngood@lemmy.ml 1 week ago
I’d rather not use flatpack, but I really should figure out better sandboxing. Not just for games, but for supply chain attacks, etc.
It’s kind of nuts that a game has access to my browser profile and all sorts of other stuff in ~.
magikmw@piefed.social 1 week ago
tomalley8342@lemmy.world 1 week ago
Maybe they are isolated already? I really should look into this.
No, the Z drive in wine maps to your linux file system.
DampCanary@lemmy.world 1 week ago
I know firejail nicely packs my Firefox & co. to only have access to select few /home/<uname> sub-dirs