3 ms·
I like how you've piecemeal blocked the same subdomain 4 times. Will you do the same for the other 4-component subdomains? In fact, I'm curious what it means to
by ButlerianJihad 20d ago
I like how you've piecemeal blocked the same subdomain 4 times. Will you do the same for the other 4-component subdomains? In fact, I'm curious what it means to "block a domain at a router".
Really? Did you give Claude the credentials to your managed switch so it could set up a mirror port? Did Claude enable promiscuous mode on your Ethernet interface? Did Claude get a master-mode WiFi AP to intercept all the frames, or did it use SDR? Tell us more about how Claude scanned your network. I am HN-curious about this!
- sumedh 20d agoI gave claude ssh access to my router, the router has a block list where you can block domains. It monitored the network traffic from the router.
- vrganj 20d agoSo in trying to get one big corp from spying on you, you gave another the keys to the castle? I really don't understand how people give models run on somebody else's server these wide-reaching permissions. Do you really trust Anthropic that much? The government that's hosting Anthropic?
- ranguna 20d ago"Giving the keys" doesn't necessarily mean outright cat the private key to Claude. You setup the key, configure SSH config to use it and you can just SSH to the machine without ever seeing the keys. Stop fear mongering unnecessarily.
- vrganj 20d agoI wasn't talking about the literal key files, I was talking about the metaphorical keys to the kingdom. No matter how you set it up, you're giving a cloud service the ability to SSH into your private network. Surely you must see the glaring security risk this creates?
- sumedh 20d agoThat is a fair point I should have done with a local LLM instead of Claude. But not exactly sure what the main issue, how can claude even access the router from the internet. Its not accessible.
- dumberquestions 20d agoHow is that any different from calling Claude from any device in your local network? Or is 2 devices that much worse than 1?
- kadoban 19d agoYou know you can monitor/reject things it attempts to do, right? For anything important I have it write scripts for what it wants to do, then I can review them for anything troubling.
- ranguna 19d ago> Surely you must see the glaring security risk this creates? Enlighten me.
- vrganj 19d agoI would recommend reading up on the basics here: https://www.crowdstrike.com/en-us/cybersecurity-101/cyberattacks/remote-code-execution/ https://www.crowdstrike.com/en-us/cybersecurity-101/cyberatt... https://www.varonis.com/blog/what-is-c2 https://www.varonis.com/blog/what-is-c2
- ranguna 18d agoI don't see how that's isolated to using harnesses? Are you going to stop using your browser? It probably has note vulnerability than you can count
- deleted 20d ago[deleted]
- petre 20d ago> I gave claude ssh access to my router Jesus.