then an adversary that can breach the app has access to these additional privileges and can perform unauthorized functions. Prohibiting an app from assigning itself unnecessary privileges greatly mitigates the risk of unauthorized use of those privileges.