Superuser could download some malware and put it into the system PATH. OK, so let's not execute anything in the PATH, unless it is owned by us.
/bin/ls? Not owned by me, don't trust it.