Malicious KDE theme can wipe out all your data - eviltoast
  • ReversalHatchery@beehaw.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    8 months ago

    It does, when the bad actor is a program you run, and other open windows contain sensitive content.

    Here the bad actor is code being loaded as an extension to the compositor. A bit like a kernel module, which can bypass file access permissions if it wants.