• @riodoro1
      link
      752 months ago

      John\0Doe will fuck with all C (and C based derivatives) software that touches it.

      • pelya
        link
        712 months ago

        Nah, it will end up simply as “John” in the database. You need “John%sDoe” to crash C software with unsafe printf() calls, and even then it’s better to use several “%s”

        • @AnUnusualRelic
          link
          172 months ago

          Which rarely, if ever, happens. Especially with US software.

      • @perviouslyiner
        link
        82 months ago

        With an address in 's-Hertogenbosch to help people who are lazy about escaping.