You're viewing a single thread.
View all comments
213
comments
That's easy, just call it Jhon\nDoe
60 0 ReplyJohn\0Doe will fuck with all C (and C based derivatives) software that touches it.
35 1 ReplyNah, it will end up simply as "John" in the database. You need "John%sDoe" to crash C software with unsafe printf() calls, and even then it's better to use several "%s"
32 0 ReplyC and C derivatives will be fine unless they're fucking up encoding.
10 0 ReplyWhich rarely, if ever, happens. Especially with US software.
8 0 Reply
With an address in 's-Hertogenbosch to help people who are lazy about escaping.
3 0 Reply
You've viewed 213 comments.
Scroll to top