lua-users home
lua-l archive

[Date Prev][Date Next][Thread Prev][Thread Next] [Date Index] [Thread Index]


Josh Haberman wrote:
> [...] but AFAIK Lua (without FFI) can be sufficiently sandboxed
> such that a ptrace sandbox is not necessary.

Maybe for an extremly restricted subset of Lua and if you
relentlessly scrutinize every single interface function you offer
to the untrusted code.

Others have repeatedly failed to keep their sandboxes sealed. See
Java, see Flash, see Acrobat. And they had 15 years of time to get
it right. Why do you believe you can do better?

--Mike