Hacker News

Favorites Setup
Comment by HackerThemAll | original | Arbitrary code execution in QubesOS via copy-to-VM error reporting backchannel
[−]HackerThemAll · 2026-08-30 Sun 10:11 UTC · link
> why it needs to show the dialog in dom0

I think it's the "secure screen" that cannot be manipulated by the malware in a VM. I'd expect a password entry dialog to also be handled like that.

[−]charcircuit · 2026-08-30 Sun 10:38 UTC · link
It's for an the "File copy/move error" error dialog.
[−]danielheath · 2026-08-30 Sun 12:26 UTC · link
If you're going to put the graphics and NIC into separate VMs, surely the secure screen can be another of those semi-privileged VMs rather than part of dom0