LainTrain@lemmy.dbzer0.com to linuxmemes@lemmy.worldEnglish · 7 months agoOld XKCD, still relevantlemmy.dbzer0.comimagemessage-square154fedilinkarrow-up1870arrow-down112file-text
arrow-up1858arrow-down1imageOld XKCD, still relevantlemmy.dbzer0.comLainTrain@lemmy.dbzer0.com to linuxmemes@lemmy.worldEnglish · 7 months agomessage-square154fedilinkfile-text
minus-squareelrik@lemmy.worldlinkfedilinkEnglisharrow-up26·7 months agoHow does it verify the command is valid? Does it run what I enter? If so, just give it an infinite loop followed by some attempt at a tar command: while true; do :; done; tar -xyz
minus-squarevelvetThunder@lemmy.ziplinkfedilinkEnglisharrow-up32·7 months agoNext time I build a bomb I let the timer continue while the command is running.
minus-squareVoroxpete@sh.itjust.workslinkfedilinkarrow-up12·7 months agoYeah, what kind of idiot doesn’t parallelize their timer function.
minus-squaremlg@lemmy.worldlinkfedilinkEnglisharrow-up24·7 months agoBlue Team: “Okay everyone let’s make sure this is absolutely the correct input” Red Team: “Lmao lets try this 90mb list of bash command injection patterns”
minus-squarelseif@sopuli.xyzlinkfedilinkarrow-up2·7 months agoi assume its looking for exit code of 0
How does it verify the command is valid? Does it run what I enter?
If so, just give it an infinite loop followed by some attempt at a tar command:
while true; do :; done; tar -xyz
Next time I build a bomb I let the timer continue while the command is running.
Yeah, what kind of idiot doesn’t parallelize their timer function.
Blue Team: “Okay everyone let’s make sure this is absolutely the correct input”
Red Team: “Lmao lets try this 90mb list of bash command injection patterns”
i assume its looking for exit code of 0
echo || tar -xfzhd