@grainloom but they (we|a)re better sandboxes than OSes

Flawed though they are

@electroCutie not really, there are OSs that don't suck at sandboxing

browsers are also bad at multi-level sandboxing because you can't easily sandbox JS inside JS, so they are not even good language VMs in my view

@electroCutie and due to their complexity and vendors pushing more and more "features" on them, they are everyone's favorite attack vector

@grainloom the most popular thing is a profitable attack vector, it true

