Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Perhaps, but almost all buffer overflow, remote code execution bugs are very similar to XSS attacks--feed the program something it doesn't expect along with some junk for it to execute. The mechanism is different but the concept it the same.


No, the concept is not the same. C programs aren't designed to execute code from third parties.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: