Why is windows browsers bad at sandboxing malware?

The idea is the browsers does not have read and write access out side it’s folder area and thus it means it cannot read and write to other files and folders.

In theory sandboxing sounds great!! But in real world many malware are clever and can bypass the sandboxing.

So the question is if user does not install a programs/applications or click yes for setting change what is going on. Why is the malware bypassing the sandboxing? Allowing read or write access?

**1 a flaw in the way the sandboxing works?

2 a flaw in OS that has so many security holes that they are always bringing out patches for many vulnerable.

3 The way the OS is built that leads to lack of security and NOT much can be done:eek::eek::eek::eek::eek::mad::mad: but built new OS from ground up!! But all software and hardware will not work!!Why? Because of support of old hardware and old software. So it sorta of like how do we do this when people want support for old hardware and old software.**

Is it time for windows to make new OS from ground up?

Or in perfect world yes? But probably will not happen for other 5 to 10 years if ever?

On side note why is google chrome and Opera seem to be more secure over IE?

Writing error-free smallish software is so hard that it is basically impossible.

Browsers are very, very far from smallish. Expecting them to be error-free is ridiculous. Over time, old errors are located and fixed* but new errors are introduced for new versions. Who knows how many exploitable ones are sitting there quietly in the background waiting to be used?

There are all sorts of attempts to wrap things in such a way to prevent these problems. Even virtual machines are not a guarantee. Once in a while an exploit is found in those.

And it’s a problem at the hardware level. A problem in Intel CPUs going back to 2008 was recently discovered. (And hardly any users of the affected chips will even hear about this flaw, let alone apply a patch.)

The Android OS has been written with a higher grade of security kept in mind. But new rooting methods are found on a regular basis.

You can be careful. Very, very careful. You can’t be perfect.

  • Hopefully. There was an infamous error in IE that MS knew about for years and didn’t do anything about since fixing it would impair features of the browser.

To be clear, Android is not a brand new operating system developed from scratch with security in mind. It’s just another version of Linux (dating back to ~1990).

So why are there lot more security holes and so many vulnerable with windows on like Linux, Unix, iOS and OS X?

Android is similar to Linux it seem it was built with networking in mind.

Probably people say windows should be more like Android or iOS. Too many security holes and vulnerable with windows. There always bringing out updates and fixes to windows.

Well no OS is 100% secure and not prone to security holes and vulnerable it seems windows is just loaded with so many security holes and vulnerable it makes me cry. When you look at other OS’s.