• 0 Posts
  • 8 Comments
Joined 3 years ago
cake
Cake day: June 9th, 2023

help-circle
  • Yeah I get your thought process, but the second vulnerability is actually just how Windows is designed to work. When Notepad follows a link, it isn’t opening a web page, it’s passing a command directly to the OS shell.

    Because Notepad is a trusted native application, it bypasses many of the security checks that a browser has.

    If the link uses the file:// protocol to point to an .exe on a remote server, or ms-appinstaller to trigger an install, the OS treats that as a direct instruction to launch that software, so it can trigger an app installation prompt or, depending on the exploit, silently side-load malicious packages.




  • Robust Mirror@aussie.zonetoMemes@sopuli.xyzIt's the dream
    link
    fedilink
    arrow-up
    1
    arrow-down
    1
    ·
    5 days ago

    What I’m going to say is: technology. The calendar will never change because of technology. This would be the most expensive and extensive change in history. Every computer system, program, device everything.

    And you have to either retroactively change past dates, or support 2 systems at the same time. It’s almost insurmountable at this point.