3 ms·
This argument is not about trusting or not trusting code. It's about piping web output blindly into a shell, which is an insecure technique, no matter how much
by jcapote 16y ago
This argument is not about trusting or not trusting code. It's about piping web output blindly into a shell, which is an insecure technique, no matter how much you trust the author or web site.
- tlrobinson 16y agoRemind me why it's more "insecure" than downloading a zip from a website and blindly running an executable inside it?