TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

DER Entitlements: The (Brief) Return of the Psychic Paper

2 pointsby creckerover 2 years ago

1 comment

ErikCorryover 2 years ago
Interesting vulnerability.<p>Having just written a DER parser I found the format way more complicated than expected. For security, simplicity is better. Note that every time you connect to an HTTPS web site, your browser is attempting to parse DER files (the certificates) that are attacker-controlled and can contain corrupt data. Scary stuff.