‹ BackHN Continuity

Thread

Data-only attacks are easier than you think (2024)

102 points · 45 comments · segfaultbuserr

  1. Terr_ · · focus · HN ↗
    > The attack effectively modifies only the arguments of the execve syscall

    I feel this checklist of shell-tools [0] is relevant, although the focus is more on how setuid is dangerous because you might not know the fancier arguments someone could supply.

    > GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.

    [0] <a href="https:&#x2F;&#x2F;gtfobins.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;gtfobins.org&#x2F;

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.