Hacker News new | ask | show | jobs
by tptacek 340 days ago
If you give a competent attacker a single input line on your REPL, you are never again going to see an output line that they don't want you to see.
1 comments

We're agreeing, here. I'm in fact suggesting you _shouldn't_ use the output from your database as input.