- cross-posted to:
- security@programming.dev
- appsec@infosec.pub
- cross-posted to:
- security@programming.dev
- appsec@infosec.pub
You must log in or # to comment.
This has been a problem for so long, and everyone just kind of assumes that maybe somebody else fixed it at some other layer. Nobody really thinks about it much. Usually because the poc requires certain preconditions, but they’re not that hard to find.
That is very true.
I do think that there’s more depth to it than that. For example, dealing with it on the end of the terminal will probably break compatibility, and dealing with it on the app end will require every single dev to start sanitizing this. The challenges are real.