Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)JA
Posts
1
Comments
57
Joined
9 mo. ago

  • Its wose mentionning that this comic name is inspired by "Still this film". A 2 parts documentary from 2006/2007 about our freedom restriction implied by copyright laws and intelectual property non-sense. From TBP team, before TBP AFK. Very interresting to see. Sadly 20 years after, nothing has changed...

    Of course it's free to "steal", magnets are hidden in this messy website: https://stealthisfilm.org/Part1/ https://stealthisfilm.org/Part2/

  • Agreed.

    Also gtfobins is a great resource in addition to shellcheck to try to make secure scripts.

    For instance I felt upon a script like this recently:

     
        
    #!/bin/bash
    # ... some stuff ...
    tar -caf archive.tar.bz2 "$@"
    
    
      

    Quotes are OK, shellcheck is happy, but, according to gtfobins, you can abuse tar, so running the script like this: ./test.sh /dev/null --checkpoint=1 --checkpoint-action=exec=/bin/sh ends up spawning an interactive shell...

    So you can add up binaries insanity on top of bash's mess.