Back to News
Advertisement
Advertisement

⚡ Community Insights

Discussion Sentiment

100% Positive

Analyzed from 156 words in the discussion.

Trending Topics

#https#com#github#phoenix#article#written#little#server#name#late

Discussion (7 Comments)Read Original on HackerNews

mid-kidabout 1 hour ago
For an article written late last year I hoped for a little more awareness of how massive a security hole granting full, unfiltered access to the X11 server is. Granted, any sandboxing is better than none, but firefox is one of the few apps that already sandboxes itself really well, and with a blog title like that it might be good to touch upon things like nested X servers such as Xephyr.
sunshine-oabout 1 hour ago
This is a great article.

I have little experience with lxc but I guess waypipe could be an option too.

LtWorfabout 2 hours ago
Or one could just use firejail, which comes with a number of pre made profiles for common applications.
nosioptar41 minutes ago
The sandbox command works well on systems using SELinux.

https://docs.redhat.com/en/documentation/red_hat_enterprise_...

calvinmorrisonabout 2 hours ago
Xlibre (the only current actively developed implementation of a X11 server) has a new extension - XNamespace to address some challenges as well.

https://github.com/X11Libre/xserver/blob/master/doc/Xnamespa...

Chu4eenoabout 1 hour ago
Not the only one, there's also a new one (written in zig) I've forgot the name of.

edit: phoenix was the name: https://github.com/external-mirrors/phoenix#phoenix

mappu36 minutes ago
There's also this new one: https://github.com/joske/yserver