Invisible characters must be specified to be visible in security-sensitive situations

From: Oren Watson via Unicode <unicode_at_unicode.org>
Date: Thu, 15 Feb 2018 17:33:12 -0500

https://securelist.com/zero-day-vulnerability-in-telegram/83800/

You could disallow these characters in filenames, but when filename
handling is charset-agnostic due to the extended-ascii principle this is
impractical. I think a better solution is to specify a visible form of
these characters to be used (e.g. through otf font variants) when security
is of importance.
Received on Thu Feb 15 2018 - 16:33:31 CST

This archive was generated by hypermail 2.2.0 : Thu Feb 15 2018 - 16:33:31 CST