‹ BackHN Continuity

Thread

Show HN: ssh ssh.place

184 points · 120 comments · jeninh

  1. 3dedb728-3f77 · · focus · HN ↗
    Hey, is it not just a simple honeypot reverse hack ssh server?

    People understand that reverse hacking can happen when connecting to random ssh server, right?

    1. bulbar · · focus · HN ↗
      Is that more likely than getting hacked when visiting a website?
      1. jolmg · · focus · HN ↗
        Visiting a random website is the normal use of HTTP. With SSH, there might be assumptions of connecting to a trusted server you have an account with and likely own. It's not very normal to ssh to a random server.
        1. teiferer · · focus · HN ↗
          > likely own

          I don't know how you are using ssh, but most ssh servers that I have connected to in my life, and still do, I don't own. Some of them I barely trust.

          1. QuantumNomad_ · · focus · HN ↗
            The ones I connect to the most often from my personal laptop I don’t physically own but I do pay to rent them and I installed the OS on them myself.
            1. hdgvhicv · · focus · HN ↗
              The main ones I don’t own are VPS servers from fairly large providers, or GitHub.
              1. jolmg · · focus · HN ↗
                When I said "own", I meant more in the sense of personally administering. It's like how you own a domain, but you're really renting it from a registrar. Rented hardware and VPSs count, as well as other servers/hosts you're responsible for.
                1. teiferer · · focus · HN ↗
                  I got that, and I'm not saying that it doesn't apply to you, but it surely does not apply to everybody.
                  1. [deleted] · · focus · HN ↗

                    [deleted]

            2. [deleted] · · focus · HN ↗

              [deleted]

        2. singpolyma3 · · focus · HN ↗
          This is simply not true
      2. xorcist · · focus · HN ↗
        Are we all pretending we have no empirical data on this? How many RCEs has there been in popular web browsers over the past two decades (dozens? hundreds?), compared to how many RCEs there has been in the OpenSSH client (perhaps we can make it one if we include xterm in that)?
        1. bulbar · · focus · HN ↗
          It is a real question, because I didn't know about the mentioned ssh attack vector.

          Regarding empirical data, that would certainly be interesting, not sure if RCE is the only category one would look at in that case.

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.