But I can tell you as a cybersecurity expert that you’d have a hard time finding a way to get any sort of remote execution from user-generated content on any major site, much less an exploitable browser sandbox escape.
I think web browser exploits wouldn’t be an issue on ubuntu anyways, as major web browsers do get regular upgrades there (or are not even installed via apt but snap nowadays). Also web browsers use sandboxes. I’m more worried about users downloading any kind of content and interacting with it via more niche software, like image viewers (though with glycin they nowadays also do sandboxing).
Fair enough!
But I can tell you as a cybersecurity expert that you’d have a hard time finding a way to get any sort of remote execution from user-generated content on any major site, much less an exploitable browser sandbox escape.
I think web browser exploits wouldn’t be an issue on ubuntu anyways, as major web browsers do get regular upgrades there (or are not even installed via apt but snap nowadays). Also web browsers use sandboxes. I’m more worried about users downloading any kind of content and interacting with it via more niche software, like image viewers (though with glycin they nowadays also do sandboxing).