I didn’t know my city was cool enough to put signal flyers.

  • my_hat_stinks@programming.dev
    link
    fedilink
    arrow-up
    0
    ·
    2 months ago

    QR codes essentially just encode text, as long as you’re using a sensible QR code reader and check any URLs before opening them there’s minimal risk to scanning a QR code.

      • hash@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        2 months ago

        Respectfully I think this is a minimal attack vector in this case due to the limited character set of urls. But thanks for the callout, I didn’t know there was a name for this sort of attack.

        • Lichtblitz@discuss.tchncs.de
          link
          fedilink
          arrow-up
          0
          ·
          edit-2
          2 months ago

          Modern browsers happily show you the actual characters, while sending their encoded entities to the server. So, from a user perspective there is no ASCII limitation. Case in point: söhne.at (just some random website, I have no idea what they are or if they are legitimate)