February 13, 2004

Decompression Bombs!

Those of you out there running
web sites that let folks upload
picture or document files might
be interested in reading this
article.

In it you'll learn way, way to
much about how easy it might
be to blow your anti-virus
scanner (or web server, or
whatever system) out of the
water.

e.g. a 7KB gzip file that expands
to over 100GB!

Food for thought!

Posted by Steve at February 13, 2004 07:48 AM