Hacker News new | ask | show | jobs
by saagarjha 286 days ago
> It hasn’t been a meaningful attack deterrent because attackers keep finding PAC bypasses.

Correction: it forces attackers to find PAC bypasses. They are not infinite.

1 comments

Hijacking control flow like this is not a hard requirement of exploitation. Vulnerabilities in a specific software release are not infinite in general so that doesn't mean much.
Memory safety issues, or ROP gadgets, and the like are basically infinite