| ▲ | Terr_ 11 hours ago | |
> The attack effectively modifies only the arguments of the execve syscall I feel this checklist of shell-tools [0] is relevant, although the focus is more on how setuid is dangerous because you might not know the fancier arguments someone could supply. > GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems. | ||