Chromium team ha scritto:
How does the sandbox work?
The sandbox uses the security features of Windows extensively; it does not reinvent any security model.
Then I guess the answer would be No.
All your sandbox means, is that the Win security process is watching, it is not in a VM.
If your Windows security process fails to see it as malware so will Chrome, Chrome is using Windows call.
Not to put words in Eds mouth, In a nutshell I think Ed was talking about this.
Chromium team ha scritto:
We expect to work in the near future with the plug-in vendors to securely sandbox them as well.
I think Chrome's sandbox maybe heading somewhere good but, I also think it is a false sense of security.
Quindi Chrome/Chromium non effettuerebbero un sandboxing "pieno", ovvero una "virtualizzazione" del sistema operativo dalla prospettiva del codice del browser, ma "semplicemente" in un processo separato e strettamente monitorato dai sistemi di sicurezza del sistema operativo.
FF4 dedica processi separati ad ogni tab... in teoria si dovrebero quindi assomigliare sotto questo punto di vista...