> The /system partition is now mounted nosuid for zygote-spawned processes, preventing Android applications from executing setuid programs. This reduces root attack surface and likelihood of potential security vulnerabilities. Well, that sounds great. It's almost like they're trying even harder to prevent people from having control over their device.
What utter bullshit. Every Google Android device gives you the full freedom to flash whatever you want to on it. No restrictions at all.
Security should not suffer because it might have a negative effect on an absolutely tiny minority of an userbase that can freely disable that added protection anyway.