4 ms·
I can agree with that, though admit to being guilty of using sudo bash far more often than I should. I honestly thought they’d be using ssh that way (single co
by aaaronic 2y ago
I can agree with that, though admit to being guilty of using sudo bash far more often than I should.
I honestly thought they’d be using ssh that way (single command at a time), though I’m still not sure to what security end.
- mmh0000 2y agoIf ‘sudo’ is properly configured running bash or anything that allows command execution (vim, eMacs, etc) is disallowed. Also, may I introduce you to the ‘sudo -i’ option.
- dns_snek 2y ago> If ‘sudo’ is properly configured running bash or anything that allows command execution (vim, eMacs, etc) is disallowed. Keep in mind that this is borderline impossible to enforce unless your goal is just to stop the most common ways of accidentally breaking the policy. A list of commands that allows breaking out into a full shell includes: less, apt, man, nano, wget & many more. https://gtfobins.github.io/#+shell https://gtfobins.github.io/#+shell
- acka 2y ago> eMacs This made me chuckle. Apple influencing the way Emacs is capitalized (pun intended) versus RMS's stance on Free Software couldn't be further apart I think.
- mmh0000 2y agoYou're correct there! Wrote that up on my tiny Apple device and really couldn't be bothered to correct Apple's spellcheck. Text editing from a 5in touchscreen is very painful.
- op00to 2y agoI sudo bash a lot as well. Some times I regret it when I try to figure out what the hell I did months ago. :)