logoalt Hacker News

Wirbelwindyesterday at 7:45 PM3 repliesview on HN

Good catch, this has now been nerfed and this approach has gotten its own title


Replies

smaudetyesterday at 10:31 PM

Actually, the only secure default is to deny everything...how do you know that innocent command is actually innocent?

show 1 reply
KajMagnusyesterday at 7:54 PM

Top 18%! I denied everything, unless I could see at a glance that it was safe (like Git diff)

xg15yesterday at 9:16 PM

Glad I could help. I love the new title :D