Stumbled across this on Hacker News. The summary is quote worthy:
This proof of concept shows why computer security is incredibly hard to get right. The attack depends on multiple software products all making very reasonable decisions about how they should work, but the way they interact with each other leads to a vulnerability.
The example, especially from a dev’s perspective, is beaut: