Damus
Micha艂
Micha艂 "rysiek" Wo藕niak 路 馃嚭馃嚘
@Micha艂 "rysiek" Wo藕niak 路 馃嚭馃嚘
A lot of people are apparently happily running a script clearly marked as a root exploit from some random website using curl | bash :blobsweat:

Some do inspect the script, but then still run it using curl | bash anyway. :thaenkin:

Incidentally, this very relevant blogpost about detecting curl | bash and serving different scripts based on that is almost exactly a decade old:
https://web.archive.org/web/20230318063325/https://www.idontplaydarts.com/2016/04/detecting-curl-pipe-bash-server-side/

#CopyFail #InfoSec
1
Alex@rtnVFRmedia Suffolk UK · 7w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpquyxyr55xy9auvwxym75a38rgr5jsc29x08hwh65n6pl9l8wuzunsujqjgw I cut and pasted it into nano after inspecting the code - incidentally it worked once on Linux Mint but there was a subsequent kernel update and it no longer works (which I guess is a go...