|
|
|
|
|
by beachhead
1286 days ago
|
|
i really hope you do this because it's super annoying to see all these folks talk about how these mitigations don't work but nobody really _shows_ it. it's always the same thing whenever openbsd is mentioned. "these mitigations don't work." - "okay, please show us that they don't work" "well, i don't use openbsd" rinse. repeat. it would also be nice to see some patches/fixes/suggestions/etc submitted after you've bypassed/defeated/whatever these things sent to the mailing lists. i don't suppose you'd agree to that? |
|
Also, I don't think it is quite right of you to be miffed that people aren't writing exploit PoCs to prove these mitigations are moot. These mitigations are trivially wrong to anyone who has any experience with exploit development, and being told to "show proof then" is baffling. It's like trying to explain to your uncle that no, vaccines will not make your child autistic, and him demanding proof. Obviously, that's neither how autism or vaccines work and trying to demonstrate that takes significantly more effort than most anyone cares to put in to a random (internet) argument. But, I am a fool who has too much time, so I'll bite.