Page 1 of 1

Block screen capture :

Posted: Sat Aug 13, 2011 9:14 pm
by AlexG
Hi there.
I'm a registred user of sandboxie for some years now and i'm using the block process access dll too.
I've locked my files and partitions so that sandboxed apps can't get to them and also block internet access and create diferent sandboxes for different apps so that any app that i have actual internet access on my computer (like IE, SKYPE, etc) have it's own sandbox with it's own rules about what it can access and what can be executed inside that sandbox, etc, and i feel way more protected and secure by now that i would never ever execute IE outside sandboxie except for the windows update.
Yet i've found a potential problem.
Apps like Skype or VNC allow for the app to take a screen capture (or several) or have direct access to the screen.
This can be a problem if, for instance, a bug is found on skype that allows leakage of that screen shots / screen sharing or if some software with that capability is installed under the sandbox. Even with a safe system, where all the files are locked and all internet apps are inside a sandbox, there this a possibility of screen captures to be made and send to 3rd party. I run my skype for several hours a day, and i'm confident that even if there are any bug on skype that will allow a 3rd party access to my system, they will not get to any files, neither the microphone that i allways un-plug while not on use, but there is yet the margin for the screen to be spyed on, and that can be a problem if you open a truecrypt volume with your secret passwords for all of your sites, or any other confidential stuff.
Sam is true if some malware is bundle with that hability and manage to be installed on a sandbox.
My request would be for an option that would block screen captures and screen sharing from inside the sandbox, so that apps like VNC or skype wouldn't be able to capture your screen under sandbox,
Thanks for the attention taken,
Alexandre.

Posted: Sun Aug 14, 2011 2:47 pm
by tzuk
I'm sorry but this feature request is outside the realm of what Sandboxie does. Like keylogging countermeasures, it requires a lot of guessing and heuristics to separate legitimate uses from criminal uses.

Posted: Tue Oct 16, 2012 11:59 am
by DeVIL-I386
Why legitimate separate from criminal activity? The option to apply for each program running in the sandbox.
Something else. Kaspersky has something great: When a program creates a screenshot, the screen is completely black. It's just for a couple milliseconds, it's not like it disturbs.

Posted: Thu Nov 08, 2012 8:53 am
by l0rdraiden
tzuk wrote:I'm sorry but this feature request is outside the realm of what Sandboxie does. Like keylogging countermeasures, it requires a lot of guessing and heuristics to separate legitimate uses from criminal uses.
The idea is for example not allow to an app out of a list that you can determine to do certain actions, capture keystrokes, screencapture....