Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: dayglored

This is a local privilege escalation vulnerability. The attacker has to have an account on the *nix machine and be able to log on as an ordinary user, in order to try to become root.

This is very different from attacks over the internet. While a user could log in remotely with SSH, he still needs an local ID and password to connect.


9 posted on 06/20/2017 3:19:53 PM PDT by proxy_user
[ Post Reply | Private Reply | To 1 | View Replies ]


To: proxy_user

So are they saying only local access as root can make this happen?

I’m gonna pass this on to my peeps on the job. But there are tons of ways of killing your linux server as root. Doesn’t require and exploit; just bad command line statements.


18 posted on 06/20/2017 4:00:00 PM PDT by jimjohn (This battle is over, but the war to rebuild the America has just begun.)
[ Post Reply | Private Reply | To 9 | View Replies ]

To: proxy_user
> While a user could log in remotely with SSH, he still needs an local ID and password to connect.

That's assuming the local user has a decent password. But even if they do...

Suppose the local user takes his laptop on a trip. It has a private SSH key for login, and the key has a null or trivial passphrase for convenience (sadly, very common).

Thief lifts the laptop from the hotel room, transfers the hard drive to a USB enclosure, plugs it into their own laptop, and checks /home or C:\Users or C:\cygwin\home.

Half an hour max; they're in. Meanwhile the local user hasn't even come back from dinner. By the time they realize it's missing, reach somebody in IT on the phone, and disable the account, the thief is long since done.

2-factor authentication is a wonderful thing.

23 posted on 06/20/2017 8:13:45 PM PDT by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government.")
[ Post Reply | Private Reply | To 9 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson