Re: How could this account have been cracked?
- From: Ertugrul Soeylemez <never@xxxxxxxxxxxxxx>
- Date: Wed, 27 Sep 2006 00:15:03 +0200
Unruh <unruh-spam@xxxxxxxxxxxxxx> (06-09-26 21:08:54):
Otherwise, it sounds like I'd have to do some serious
organizational work...
Although... maybe a happy medium would be to just install a new HD
in the existing box, and use that as the new OS filesystem. Mount
the existing suspect drive as data, and migrate that way.
If you've taken precautions for such situations, then there is no
problem, really. Since you only need to reinstall your system, for
example, you don't need to touch your /home tree. If you have an own
partition for /home, then you're in luck. If you need to save data in
other trees, then you can just create a temporary directory in /home,
and copy the data there.
Well, no. People can install garbage anywhere. FOr example, I had a
machine rooted and it had suid shells scattered all over the
place. Eg, /tmp/banana was one. It is easy to stick something into a
/home directory (eg just take a file name there, change it by one
letter and have it be an suid root shell.)
At the very least do
find /home -perm +6000 -l
to look for any suid and guid files in the /home directory.
Similarly in /dev, /tmp, etc.
I have addressed that issue earlier. In that paragraph, I was talking
merely about the migration process itself.
Regards,
E.S.
.
- References:
- How could this account have been cracked?
- From: robb@xxxxxxx
- Re: How could this account have been cracked?
- From: Ian Kilgore
- Re: How could this account have been cracked?
- From: robb@xxxxxxx
- Re: How could this account have been cracked?
- From: Nathanael Hoyle
- Re: How could this account have been cracked?
- From: robb@xxxxxxx
- Re: How could this account have been cracked?
- From: ynotssor
- Re: How could this account have been cracked?
- From: robb@xxxxxxx
- Re: How could this account have been cracked?
- From: Ertugrul Soeylemez
- Re: How could this account have been cracked?
- From: Unruh
- How could this account have been cracked?
- Prev by Date: Re: How could this account have been cracked?
- Next by Date: Re: Are capabilities worthwhile?
- Previous by thread: Re: How could this account have been cracked?
- Next by thread: Re: How could this account have been cracked?
- Index(es):
Relevant Pages
|
|