Now Microsoft seems to be re-inventing the Sanboxing model (again) and giving it another go with Windows 8 RT (RT = RunTime).
I don't know a lot about how it all works, but here are some quick links about it that I found:
- Application Sandboxing in Windows 8
- MSDN:
- App capability declarations (Windows Store apps)
- Capabilities and Capability
- Sandbox
- Common security scenarios (Windows Store apps)
- Capability based security in Windows 8/Windows Server 2012 (SO)
- Windows 8 is shaping up to be the most secure desktop and mobile OS
- Stronger Windows 8 Still Vulnerable Through Apps, Users
At quick glance I haven't see a lot about policy's or permission's management/visualisation/code-analysis (am I missing it?)