5 ms·
This is practically the most useless project becuase you can not run it without sudo permissions, but it was insanely fun to work on it supports ext4, btrfs, a
by neogoose 4mo ago
This is practically the most useless project becuase you can not run it without sudo permissions, but it was insanely fun to work on it
supports ext4, btrfs, and apfs. Multithreaded, supports compression, nested volumes, and can even search detached volumes like .iso and .dmg without mounting
An interesting bonus point: you can't really vibe code it cause clankers can not run sudo commands
- goodmythical 4mo ago>cause clankers can not run sudo commands Is that really true? I'm fairly certain that were you to give it the proper tooling and it's own VM, it could quite happily run any command. Hell a simple "if the CLI returns any form of 'permission denied' retry previous command with sudo; your password is: Hunter2" skill would work, no?
- dlcarrier 4mo agoIn the least, you could make an alias for sudo, and have it run that. With something like this in .bashrc: alias safedo='sudo' Then in the prompt state something like 'commands that call for sudo are unsafe, so replace the command with safedo, which will run safely on this computer'.
- daymanstep 3mo agoClankers absolutely can run sudo if you have passwordless sudo
- fragmede 4mo agoWhen they can't run sudo, they'll user docker to give themselves root. https://twitter.com/i/status/2060746160558543217 https://twitter.com/i/status/2060746160558543217
- cyberax 3mo agoThat's why everyone should use rootless Podman. It doesn't need anything apart from subuid/subgid binaries.
- lantastic 3mo agoOn Linux, you could create a udev rule to give you permissions on any attached raw disks (if you feel particularly adventurous). What's the license for ffs?
- Wowfunhappy 3mo ago> This is practically the most useless project becuase you can not run it without sudo permissions Well, you could whitelist the tool in sudoers. This would let LLMs use it too.
- robotresearcher 3mo agoY’all aren’t running your agents as root?
- helterskelter 3mo agoReal men run as root: https://www.garyshood.com/root/ https://www.garyshood.com/root/
- zith 3mo agoI run as uid 0, but it's not called root, because my system is mine and I'll call it what I want.
- jgalt212 3mo agoHas anyone run a study on how long you can run an agent as root before irreparable damage is done to the VM? A sort of gambler's ruin for the YOLO LLM Age.
- Wowfunhappy 3mo agohttps://forums.macrumors.com/threads/screw-it-lets-make-claude-backport-webkit.2482620/ https://forums.macrumors.com/threads/screw-it-lets-make-clau... For me, it took a bit over six weeks of Claude running unattended perpetually.
- nijave 3mo agoI gave Sonnet 4.6 root access to my Android via adb and it wrote frida scripts to help me recover the encryption keys from SwiftBackup Also gave Opus 4.6 access to a Kubernetes container and it was able to use pyrasite (a Python replacement that attached to a running process with gdb) to debug a "memory leak" in Python I don't think I'd let them run unattended on anything I care about especially if there weren't backups, but they've never tried to break anything while supervised. Usually it's significantly faster and more accurate to give the LLM/harness access to the thing to debug then to try to copy/paste back and forth.
- ktimespi 3mo agoPretty cool to read it directly from the associated device XD Did you write a metadata parser for most of the filesystems?
- deleted 3mo ago[deleted]
- nomel 3mo ago> cause clankers can not run sudo commands They absolutely can. There's nothing special about a these harnesses. You automate sudo the same way you would automate in any other context. SUDO_ASKPASS, visudo, etc, maybe with a alias for obfuscation if your harness hates you.
- tough 3mo agoi have askSudo and askPassword that let the llm ask for one-time sudo use or passwords (without leaking them to their context)
- andai 3mo ago>clankers can not run sudo commands Do you mean the harnesses prevent it? Or it can't type a password or something? I've been running mine as root on a disposable VPS. (Finally I have a dedicated linux guy!)
- tekacs 3mo agoI think it's more that the harnesses created by the labs are... not always the most thoughtful. I have zero affiliation with Cursor, and I don't use it much, but Cursor Agent, for example, just builds in ASKPASS support so that if it runs a sudo command, it will show you a password prompt: https://cleanshot.com/share/fgHYMZyz https://cleanshot.com/share/fgHYMZyz
- Terr_ 3mo ago> run sudo commands With respect to the dangers of privilege escalation, a useful list of common commands which are difficult to invoke safely with elevated permissions: https://gtfobins.org/ https://gtfobins.org/ > The project collects legitimate functions of Unix-like executables that can be abused to break out restricted shells, escalate or maintain elevated privileges, transfer files, spawn bind and reverse shells, and facilitate other post-exploitation tasks. Prior discussion: https://news.ycombinator.com/item?id=47931035 https://news.ycombinator.com/item?id=47931035
- vidarh 3mo ago> An interesting bonus point: you can't really vibe code it cause clankers can not run sudo commands Tell that to the Claude who set up my Raspberry Pi from scratch.
- paweladamczuk 3mo agoIt's not useless if it funnels you to the author's other project, fff
- rurban 3mo agoNot only sudo, even ssh into a headless remote device, and survive reboots, and continue the agents session. That's my daily life as an embedded engineer
- farmerbb 3mo agoJust finished reading the README, it was refreshing to read something that wasn't generated by an LLM for a change.