Y
Hacker News
new
|
ask
|
show
|
jobs
by
saagarjha
286 days ago
> It hasn’t been a meaningful attack deterrent because attackers keep finding PAC bypasses.
Correction: it forces attackers to find PAC bypasses. They are not infinite.
1 comments
strcat
286 days ago
Hijacking control flow like this is not a hard requirement of exploitation. Vulnerabilities in a specific software release are not infinite in general so that doesn't mean much.
link
saagarjha
286 days ago
Memory safety issues, or ROP gadgets, and the like are basically infinite
link