Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The canonical document about this sort of option injection attack:

https://www.defensecode.com/public/DefenseCode_Unix_WildCard...

BTW, shellcheck detects this sort of thing:

https://www.shellcheck.net/



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: