- cfdea5f Blocks untrusted apps to access /dev/socket/mdnsd from U by Yuyang Huang · 2 years, 1 month ago
- 8a7dcb5 Drop back-compatibility for hiding ro.debuggable and ro.secure by Alessandra Loro · 2 years, 6 months ago
- d0e108f Disallow untrusted apps to read ro.debuggable and ro.secure by Alessandra Loro · 2 years, 7 months ago
- ea5460a untrusted_app_30: add new targetSdk domain by Bram Bonné · 3 years, 10 months ago
- f6fc937 Revert "untrusted_app_30: add new targetSdk domain" by Paul Hobbs · 3 years, 8 months ago
- 55badc2 untrusted_app_30: add new targetSdk domain by Bram Bonné · 3 years, 10 months ago
- a4433b4 Enforce RTM_GETLINK restrictions on all apps by Bram Bonné · 3 years, 10 months ago
- 2eaa33d Untrusted_app: audit NETLINK_ROUTE bind and RTM_GETLINK by Jeff Vander Stoep · 4 years, 2 months ago
- 80b8e3c Revert^3 "Enforce RTM_GETLINK restrictions on all 3p apps" by Bram Bonné · 4 years, 3 months ago
- 18ccf97 Revert^2 "Enforce RTM_GETLINK restrictions on all 3p apps" by Bram Bonné · 4 years, 3 months ago
- f48d1f8 Revert "Enforce RTM_GETLINK restrictions on all 3p apps" by Tej Singh · 4 years, 3 months ago
- 03fb6ee Enforce RTM_GETLINK restrictions on all 3p apps by Jeff Vander Stoep · 4 years, 4 months ago
- 1f7ae8e reland: untrusted_app_29: add new targetSdk domain by Jeff Vander Stoep · 5 years ago
- 1d241db Revert "untrusted_app_29: add new targetSdk domain" by Santiago Seifert · 5 years ago
- a1aa221 untrusted_app_29: add new targetSdk domain by Jeff Vander Stoep · 5 years ago
- 8eff3e2 Deprecate /mnt/sdcard -> /storage/self/primary symlink. by Tri Vo · 6 years ago
- c9aba12 Allow execmod for apps with targetSdkVersion=26-28 by Jeff Vander Stoep · 6 years ago
- 8b12ff5 Neverallow app open access to /dev/ashmem by Tri Vo · 6 years ago
- 73d0a67 sepolicy for ashmemd by Tri Vo · 6 years ago
- 3f63dbf Audit native code loading on user builds. by Alan Stokes · 6 years ago
- c6cbead Un-revert "Audit execution of app_data_file native code." by Alan Stokes · 6 years ago
- 65a89c1 Revert "remove app_data_file execute" by Nick Kralevich · 6 years ago
- fa3eb77 Revert "Audit execution of app_data_file native code." by Nick Kralevich · 6 years ago
- 8904147 Audit execution of app_data_file native code. by Alan Stokes · 6 years ago
- b362474 remove app_data_file execute by Nick Kralevich · 6 years ago
- cfe1bae place dex2oat auditallow statements in userdebug_or_eng blocks by Nick Kralevich · 6 years ago
- 535c5d2 Remove 'dex2oat_exec' from untrusted_app by David Brazdil · 6 years ago
- 5dc2c8c Revert "Revert "Enforce execve() restrictions for API > 28"" by Yabin Cui · 6 years ago
- 15d1a12 Revert "Enforce execve() restrictions for API > 28" by Nick Kralevich · 6 years ago
- 0dd738d Enforce execve() restrictions for API > 28 by Nick Kralevich · 6 years ago
- 16dbe82 Block access to xt_qtaguid proc files by Chenbo Feng · 6 years ago
- 7a4af30 Start the process of locking down proc/net by Jeff Vander Stoep · 7 years ago
- 3aa7ca5 Add untrusted_app_27 by Jeff Vander Stoep · 7 years ago[Renamed (65%) from public/untrusted_app_25.te]
- bacb6d7 untrusted_app: policy versioning based on targetSdkVersion by Jeff Vander Stoep · 8 years ago