Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It sounds like you just described what User Account Control (UAC) has been doing since Windows Vista (2006).


There are UAC bypasses. Microsoft has repeatedly stated that UAC isn't actually a security boundary. It's better to run a daily driver account as a limited user and only elevate when you overtly need it. (It's even better to use a separate login, as opposed to "Run As...)


Exactly - UAC is like a poor man's Sudo and I never really got the point of it. There is a reason so many people tried to disable it.

Daily driver as limited user should be the windows default even if it makes use ability more confusing.


Aren't most UAC bypasses relying on the fact that UAC by default isn't "full sudo"mode - i.e. it allows certain things without prompting?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: