Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×

Comment Re:Quotes (Score 1) 94

I wonder how many still have that subsystem, since it became optional. But then again, that's something that might reasonably be installed on a server. If I had it installed, I'd give it a try. .Net definitely fails on a normal system, I don't feel like fudging around enough to try NtCreateDirectory.

Comment Quotes (Score 5, Insightful) 94

Quotation marks are used in the shell environment to make sure that the data inside the quotes is not interpreted by the program as a command.

Except in the cases it triggers the exploit. IMHO, that's the newsworthy bit of this.

Not quoting causes issues is news along the same level as "water is wet". Trying to be secure and breaking things? That's big. At least it's not possible with filenames.

Comment It's an absolutely horrid idea (Score 1) 185

It's a horrible and a sample of things that could potentially come in the future.

That is exactly why I say do it. Implement it, and implement it well. The blow back will hopefully be huge and act as a precedent, both in a legal sense and a more informal sense where the entities trying to do it get hit hard in PR and profits.

"The best way to get a bad law repealed is to enforce it strictly." - Abraham Lincoln

Slashdot Top Deals

Ya'll hear about the geometer who went to the beach to catch some rays and became a tangent ?

Working...