this post was submitted on 15 Nov 2023
788 points (96.1% liked)

Programmer Humor

19593 readers
477 users here now

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

founded 1 year ago
MODERATORS
788
Yes (programming.dev)
submitted 1 year ago by mac to c/programmer_humor
 
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 143 points 1 year ago* (last edited 1 year ago) (18 children)

my website's backend is made with bash, it calls make for every request and it probably has hundreds of remote arbitrary code execution bugs that will get me pwned someday, it's great

edit: to clarify, it uses a rust program i made to expose the bash scripts as http endpoints, i'm not crazy enough to implement http in bash

it behaves like a static file server, but if a file has the others-execute permission bit set it executes the file instead of reading it

it's surprisingly nice for prototyping since you can just write a cli program and it's automatically available over http too

[–] [email protected] 61 points 1 year ago (4 children)

I pity the hacker who ends up in your system

[–] [email protected] 9 points 1 year ago (1 children)

I've taken some precautions, it's running in a container as an unprivileged user and the only writable mount is the directory where make writes rendered pages, but i probably should move it into a vm if i want to be completely safe lol

[–] [email protected] 9 points 1 year ago (1 children)
[–] [email protected] 9 points 1 year ago* (last edited 1 year ago)

Maybe I'll finally move it into a VM so I can send a link to it here without tempting people :P

load more comments (2 replies)
load more comments (15 replies)