You need Wine for that
/s
Jokes aside, the fact that Wine defaults to mounting your entire drive to the fake Windows environment is a major security issue. This whole project is a very impressive engineering feat but the user experience is so bad it can have disastrous consequences.
wine also lets windows executables call any syscall of the host, a malware could attempt to detect wine and just call posix syscalls even if you dont mount your drive to the virtual windows enviroment, this also means that flatpak or bubblewrap doesnt do as much as you would hope for
You can install Wine as flatpak. That should solve some of the issue.
Wow. You found a way to make wine’s issues worse by adding the supply-chain risk on top.
Unfortunately, it’s only a matter of time until native Linux malware becomes more rampant
Yeah, got me into Linux hardening.
Could you elaborate a bit on that? Like what would you suggest apart from the obvious things like updating, not downloading weird stuff and limit open ports to the minimum and stuff like that?
Well, whenever you talk about Linux, you gotta get real hard.
tries to install with wine anyway
while running wine with sudo
inside flatpak with tight permissions anyway.
Oh yeah baby, give me those tight permissions uwu

Open an issue in wine, tell them that not supporting malware robs you of the true native windows experience.
Try ReactOS for this experience: https://reactos.org/








