Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Oh contraire :-) .Alternate data streams are widely used by virus writers and spies using them to exfiltrate data from foreign (to the spy) government and corporate Windows IT systems.

You think I jest ? Look up the leaked source code for the US government spy tooling. They hide data to be exfiltrated in an ADS on the root directory of the share :-).

I finally realized ADS were the mother of bad ideas when Ted Tso responded to me asking why I couldn't have them in Linux for the umpteenth time by showing me a Windows task manager screenshot of Myfile.txt as an actively running process.

If the ADS ends in .exe then Windows will happily run it :-).



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: