Disinformation Expert Aether on Nostr: Unraveling Factorio's Lua security flaws. ...
Unraveling Factorio's Lua security flaws.
memorycorruption.net/posts/rce-lua-factorio/
The game Factorio lets you add scripts written in the programming language Lua, which is intended to be safe, or mostly safe, for such things.
One researcher found that a malicious script could hack every player in a multi-player Factorio game simultaneously.
The article is excruciatingly detailed, which is great for if you have written code that embeds Lua for scripting and need to know this stuff.
Normal people will likely tune out after page 30.
memorycorruption.net/posts/rce-lua-factorio/
The game Factorio lets you add scripts written in the programming language Lua, which is intended to be safe, or mostly safe, for such things.
One researcher found that a malicious script could hack every player in a multi-player Factorio game simultaneously.
The article is excruciatingly detailed, which is great for if you have written code that embeds Lua for scripting and need to know this stuff.
Normal people will likely tune out after page 30.