[sf-lug] Plain text = remote code execution??

Daniel Gimpelevich daniel at gimpelevich.san-francisco.ca.us
Thu May 25 16:54:02 PDT 2017


On Thu, 2017-05-25 at 13:26 -0700, Rick Moen wrote:
> Quoting Daniel Gimpelevich (daniel at gimpelevich.san-francisco.ca.us):
> 
> > Now I've seen everything:
> > http://blog.checkpoint.com/2017/05/23/hacked-in-translation/
> 
> As usual for press releases from antimalware companies, they tell you
> roughly nothing about how this _works_.  (In fairness, they may be
> still
> embargoing details while fixed versions are being sent out.)

Yeah, well, initially I considered linking this instead:
http://www.telegraph.co.uk/technology/2017/05/25/hackers-hiding-computer-viruses-film-subtitles-experts-warn/
I think what I linked instead is quite the improvement over it.
(Kidding.)




More information about the sf-lug mailing list