3 ms·
> if you are protecting yourself from something that can access /proc (i.e. root) on Linux and all other Unix-like systems I know of, all users are allowed to
by Hello71 5y ago
> if you are protecting yourself from something that can access /proc (i.e. root)
on Linux and all other Unix-like systems I know of, all users are allowed to list running processes and their command lines.
> Protecting yourself from a rogue process that can monitor `ps` is also already a lost battle.
ps is not a privileged command on most systems. POSIX says "On some implementations, especially multi-level secure systems, ps may be severely restricted and produce information only about child processes owned by the user."; "severely restricted" implies that this is not a common behavior.
furthermore, the article explains clearly how to hide secret arguments from ps. that's the main point of the article.