You're viewing a single thread.
View all comments
216
comments
That's easy, just call it Jhon\nDoe
61 0 ReplyJohn\0Doe will fuck with all C (and C based derivatives) software that touches it.
36 1 ReplyNah, it will end up simply as "John" in the database. You need "John%sDoe" to crash C software with unsafe printf() calls, and even then it's better to use several "%s"
32 0 ReplyC and C derivatives will be fine unless they're fucking up encoding.
10 0 ReplyWhich rarely, if ever, happens. Especially with US software.
8 0 Reply
With an address in 's-Hertogenbosch to help people who are lazy about escaping.
4 0 Reply
You've viewed 216 comments.
Scroll to top