texlua-based tool and restricted shell escape

Jonathan Fine jfine2358 at gmail.com
Tue Feb 20 21:01:44 CET 2024


Hi

After sending my previous post I did a web search and found
Subject: Don’t take LaTeX files from strangers
https://www.usenix.org/system/files/login/articles/73506-checkoway.pdf

Much to my surprise I found a reference to MathTran, a service I created
over 15 years ago. The article wrote: The one previewer we were unable to
attack, MathTran, uses Secure plain TeX, a reimplementation of plain TeX
that prevents using any control sequence other than those meant for
typesetting.

I'm very pleased to have these words of approval from Checkoway et al.

yours securely

Jonathan
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://tug.org/pipermail/tex-live/attachments/20240220/dd993bc0/attachment.htm>


More information about the tex-live mailing list.