← Back to context

Comment by fg137

12 hours ago

I think it's simpler: don't touch untrusted content unless/until you need to.

But that just moves it from 0-touch, to 1-touch (which is of course better).

But users are morons.

We STILL NOW, have people getting phished and pwning their employers.

That's easy, and already done. Phones only touch untrusted content when they need to, it's just that they need to touch it immediately upon receipt