[sldev] Re: Plugin architecture

Soft Noel soft at softnoel.org
Wed Feb 21 23:40:47 PST 2007

On Wed, February 21, 2007 9:32 pm, John Hurliman wrote:
> Ben Byer wrote:
>>> [...] and LL-triggered plugin invalidation possible.
>> Whoa.  Everyone, raise your hand if you think this is a good idea.
>> -b
> That's the most plausible idea since DRM!

Scenario: Non-malicious plugin Foo v0.9 has a design defect causing a
hundred users to hammer Userserver with large packets and kill IMs for
everyone. LL says "All Foo v0.9, please unload/refrain from loading."

I don't begin to pretend that this would be useful for stopping malicious
code. Any attacker has the source, can see how the viewer identifies the
plugin, and can work around that.

