4 ms·
Well that's an incredibly dangerous command to run without thinking.
by bendavis381 13y ago
Well that's an incredibly dangerous command to run without thinking.
- dangirsh 13y agoJust curious about what could go wrong (assuming I've quickly skimmed the file)?
- cdcarter 13y agoQuickly skimming the file no longer counts as "running without thinking" but even then, if the server sent a different file to browsers than it does to curl...
- laumars 13y agoObviously. But then it's incredibly dangerous to run any command posted online without thinking; at least this one is easy to understand and verify. Given the demographic of this site, I thought I'd be insulting everyone's intelligence by offering up a more verbose description. I mean the description is the command itself! And verifying the contents of the URL is as simple as viewing a web page (if anyone can't manage that then I wonder how they're reading that command to begin with :p).
- gizmo686 13y agoNot nearly as dangerous as `curl <URL> | sh` With `curl http://someonewhocares.org/hosts/hosts http://someonewhocares.org/hosts/hosts | sudo tee -a /etc/hosts`, you know that the damage is contained to appending malicious data to /etc/hosts. Furthermore, the use of tee guarentees that you see the data that gets appended. Additionally the potential damage of malicious data in /etc/hosts is minimal if quickly detected and fixed.