TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Qubes – Secure Desktop OS Using Security by Compartmentalization

101 pointsby teteover 10 years ago

7 comments

prohorover 10 years ago
There is a similar concept coming to Windows: <a href="http://www.bromium.com/innovations/micro-virtualization.html" rel="nofollow">http:&#x2F;&#x2F;www.bromium.com&#x2F;innovations&#x2F;micro-virtualization.html</a>
评论 #8432018 未加载
评论 #8429908 未加载
评论 #8430533 未加载
bespoke_engnrover 10 years ago
I think I&#x27;ve seen this before, in a post somewhere by one of their developers. I think it was about how insecure X11 is, because any X11 app can listen for all keystrokes made by the user. AFAIK people jumped on that post as &quot;it&#x27;s a known property of X11, stop making drama about it.&quot;
justincormackover 10 years ago
This article [1] is a good overview.<p>[1] <a href="http://www.invisiblethingslab.com/resources/2014/Software_compartmentalization_vs_physical_separation.pdf" rel="nofollow">http:&#x2F;&#x2F;www.invisiblethingslab.com&#x2F;resources&#x2F;2014&#x2F;Software_co...</a>
phaerover 10 years ago
&gt; The Qubes Windows Tools are proprietary but we distribute the binaries for free with current Qubes OS releases.<p>Out of curiosity: What&#x27;s the reason for them being proprietary while the rest of the system seems to be free software?
评论 #8430556 未加载
nnnnniover 10 years ago
So... my question is: How does this work with things like games or other hardware-acceleration-intensive programs?<p>If there&#x27;s no performance loss, great.
评论 #8431673 未加载
评论 #8431668 未加载
评论 #8434372 未加载
niutechover 10 years ago
Isn&#x27;t it the same as Sandboxie? <a href="http://www.sandboxie.com/" rel="nofollow">http:&#x2F;&#x2F;www.sandboxie.com&#x2F;</a>
评论 #8429976 未加载
评论 #8431177 未加载
评论 #8435891 未加载
mrottenkolberover 10 years ago
While I am all for virtualizing, it doesn&#x27;t help security. It just moves the exploit from your OS into your hypervisor. Even worse, you add a whole new level of exploitable code.
评论 #8429807 未加载
评论 #8429955 未加载
评论 #8430100 未加载
评论 #8429865 未加载