logoalt Hacker News

e1gtoday at 1:56 AM1 replyview on HN

Yes, for about a decade. But it’s available everywhere, and still works - and protects us - like brand new!


Replies

rvztoday at 3:52 AM

It's quite naive to assume that. There is a reason why it is deprecated by Apple.

Apple is likely preparing to remove it for a secure alternative and all it takes is someone to find a single or a bunch of multiple vulnerabilities in sandbox-exec to give a wake up call to everyone why were they using it in the first place.

I predict that there is a CVE lurking in sandbox-exec waiting to be discovered.

show 3 replies