Edward Chrzanowski CSCF echrzano at cscf.cs.uwaterloo.ca
Tue Nov 15 13:14:49 EST 2011

> http://www.h-online.com/security/news/item/Holes-in-Apple-s-Mac-OS-X-sandbox-1379014.html

Nothing new - All applications have to be vetted by Apple to be part of the store.  Does
not mean you have to go through the store for applications.  Take a look at jail-broken
iphones/ipads. Sandboxing applications on macosx will be a difficult process.  Apple has 
also stated in the past that GUI can overwrite CLI setting and vice versa. Wonder if sudo
can restrict commands.

