Multiprocessor and VT-x support?
Posted: Fri Feb 29, 2008 8:39 pm
Something else (I don't remember what) got me thinking if either of these technologies are possible and or beneficial to Sandboxie. What do you think tzuk?
Support Forum for Sandboxie
https://forums.sandboxie.com/phpBB3/
https://forums.sandboxie.com/phpBB3/viewtopic.php?f=4&t=2959
Something else? It was probably either something you read about Vista, or it is Rash's post about that stupid idea by those Wilders morons about making a hypervisor based hips.wraithdu wrote:Something else (I don't remember what) got me thinking if either of these technologies are possible and or beneficial to Sandboxie. What do you think tzuk?
I think it's very useful for platform virtualization, but pretty much useless for application virtualization a-la Sandboxie. The point of the virtualization technology is to enable "the hardware virtualizing software" (e.g. VMware) to present a better "fake" CPU to the guest OS that it runs. It matters to the guest OS because as an OS, it needs to manage hardware, including the CPU. Sandboxie, on the other hand, manages the OS (or perhaps more correctly, the OS API interface) and has nothing to do with the hardware directly.wraithdu wrote:What do you think tzuk?
Can you perhaps tell me why you think that it´s a stupid idea? And FYI, a lot of those morons are fan of SBIE.about that stupid idea by those Wilders morons about making a hypervisor based hips
Glad to.
I don't think it is stupid idea, it just is a stupid idea...Rasheed187 wrote:Can you perhaps tell me why you think that it´s a stupid idea? And FYI, a lot of those morons are fan of SBIE.![]()
No.Rasheed187 wrote:@ Tzuk, can you perhaps reply to the questions in this thread? TIA
http://www.sandboxie.com/phpbb/viewtopic.php?t=2901
I already had a feeling that you might say this, but can you perhaps explain why? Is this top secret stuff or something? I mean, I´m just an amateur, but I´m sure that hackers already have the answer to the first 2 questions, so I don´t see why you can´t answer them. And what about my third question, about the hypervisor HIPS?No
Well, personally I don´t have the technical knowledge to be so sure if it´s really such a bad idea, or if it´s even possible in the first place. But if folks can make the Blue Pill rootkit, you would think that such tech can also be used by HIPS. Actually, HyperSight already acts like a HIPS. Of course, the tech still needs to be improved.I don't think it is stupid idea, it just is a stupid idea...
Here, let me tell you what it is that is really grinding my nerves.Rasheed187 wrote:Well, personally I don´t have the technical knowledge to be so sure if it´s really such a bad idea, or if it´s even possible in the first place. But if folks can make the Blue Pill rootkit, you would think that such tech can also be used by HIPS. Actually, HyperSight already acts like a HIPS. Of course, the tech still needs to be improved.
The problem right now is that, if you allow certain stuff (or if HIPS is bypassed) malware can take complete control, and kill all security tools, including Sandboxie. But if there is always some security tool running in the lowest layer (acting as hypervisor), this ain´t (or shouldn´t be) possible.