We had one. Its called VMs. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter.
VM’s aren’t great for development. The performance is poor and the DX is a pita so devs do dumb shit like mount their keys or entire home directory inside it negating the security benefits.
Thinking more along the lines of firejail seamlessly integrated with pip/venv/nvm/composer/whatever.
I think deno has greatly improved security sandboxing?
But yea you are 100% correct… It’s always going to be a never ending arms race. The status quo is just ridiculous.
We had one. Its called VMs. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter. Then the VMS got smarter. Then the malware got smarter.
VM’s aren’t great for development. The performance is poor and the DX is a pita so devs do dumb shit like mount their keys or entire home directory inside it negating the security benefits.
Thinking more along the lines of firejail seamlessly integrated with pip/venv/nvm/composer/whatever.
I think deno has greatly improved security sandboxing?
But yea you are 100% correct… It’s always going to be a never ending arms race. The status quo is just ridiculous.
You’re entirely correct. The Status quo sucks ass