🦞🌯 Lobster Roll

Thread

Flatpak Permission Survey (ejona.ersoft.org)

Stories related to "Flatpak Permission Survey" across the full archive.

Overview of Flatpak’s Permission Models (theevilskeleton.gitlab.io)
Flatpak Permission Survey (ejona.ersoft.org)
How I Hacked Facebook OAuth To Get Full Permission On Any Facebook Account (nirgoldshlager.com)
Android privilege escalation to mediaserver from zero permissions (CVE-2014-7920 + CVE-2014-7921) (bits-please.blogspot.com)
Pokémon GO Permissions Update (support.pokemongo.nianticlabs.com)
The flatpak security model – part 1: The basics (blogs.gnome.org)
An Analysis of the Privacy and Security Risks of Android VPN Permission-enabled Apps (research.csiro.au)
> The first analysis of its kind, the report looked at 283 Android VPN apps, investigating a wide range of security and privacy features.VPN facts from the study > > Alarmingly, the report uncovered that not only did 18 per cent of the apps fail to encrypt users’ traffic but 38 per cent injected ...
Cloak and Dagger: From Two Permissions to Complete Control of the UI Feedback Loop (cloak-and-dagger.org)
Flatpak - a security nightmare (flatkill.org)
Trivial Bug in X.Org Gives Root Permission on Linux and BSD Systems (bleepingcomputer.com)
Swiss Army knife for Unix permissions (github.com)
Flatkvm - A tool to easily run Flatpak apps isolated with QEMU/KVM (github.com)
Oscar: A Practical Page-Permissions-Based Scheme for Thwarting Dangling Pointers (2017) (usenix.org)
Abstract: "Using memory after it has been freed opens programs up to both data and control-flow exploits. Recent work on temporal memory safety has focused on using explicit lock-and-key mechanisms (objects are assigned a new lock upon allocation, and pointers must have the correct key to be de...
subuser: run Linux programs with selectively restricted permissions (github.com)
Flatpak - a security nightmare (2020) (flatkill.org)
Restricting cluster-admin Permissions (marcusnoble.co.uk)
PostgreSQL ERROR: permission denied for schema public (cybertec-postgresql.com)
How Firefox gives special permissions to some domains (frederik-braun.com)
Sandboxing All The Things with Flatpak and BubbleBox (ralfj.de)
Instead of "auth", we should say "permissions" and "login" (ntietz.com)
mir: Module-level RWX permissions for Node.js (github.com)
Can You Really Trust That Permission Pop-Up On macOS? (CVE-2025-31250) (wts.dev)
Kubernetes Remote Code Execution Via Nodes/Proxy GET Permission (grahamhelton.com)