4 ms·
it surprises me a bit. I'm wondering why wouldn't RubyGems implement some basic form of malware detection? This type of code shouldn't be too hard to classify.
by gotts 7y ago
it surprises me a bit.
I'm wondering why wouldn't RubyGems implement some basic form of malware detection? This type of code shouldn't be too hard to classify.
- derimagia 7y agoMalicious users would just change their code slightly to get past it. Use a different service than pastebin, or just obfuscating it more.
- gotts 7y agoAfter thinking about.. I think you must be right. Malware detection is not an easy task especially because of Ruby's dynamic nature. Even simple open(), sleep(), eval() could be easily obfuscated.