1) curl | sh
2) llm | sh
1) curl | sh
2) llm | sh
one thing to remember is that you can make a server respond one thing when a user does "curl <url>" and another thing when the users does "curl <url> | sh":
https://lukespademan.com/blog/the-dangers-of-curlbash/
another thing to know is that github.com/<org>/<proj>/[...somethings...] isn't necessarily controlled by <org>:
https://vulcan.io/blog/github-comment-malware-what-you-need-...
So like, has anyone ever actually done enough fuzzing to see if this or other actually bad commands ever happen in practice, or are we just going on vibes here? I suppose its possible that you give it a text description to do something bad and it does, but I'm actually curious if this is just 'llms bad' vibes.
We live in times where you shouldn't use C or C++, because undefined behavior can eat your face and general memory safety issues, but at the same time let's pipe LLM output to your shell.
It is causing a little tingling in my heart.