IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 1 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New I'll bite
the touch command is used to set the timestamp on a file. You can touch a non-existent file and touch will create it for you. The bad hat doesn't have read access to the password file, so he can't look at it or copy it. But maybe by faking out touch with the bogus path he can have it copy the password file to /tmp/wicked where he will be able to read it.

Have fun,
Carl Forde
New That sounds wrong
If a system isn't running shadowed passwords, he'd have read access to /etc/passwd already. (Unless someone has taken the time to chmod 400 /etc/passwd, which... hmmm... I don't know what would break. Time for experimentation (system security for the paranoid. :=))

If it's using shadow passwords, he doesn't have access to it anyway.

On HPUX 11.0, with ksh, it doesn't do anything.
"Beware of bugs in the above code; I have only proved it correct, not tried it."
-- Donald Knuth
     Linux Test - (broomberg) - (21)
         Don't hire me. - (Another Scott)
         Re: Linux Test - (JayMehaffey)
         See the comments at LinuxToday - (ben_tilly) - (12)
             I'll bite - (broomberg) - (9)
                 So far so good, now for a hint - (ben_tilly) - (8)
                     My guess - (Steven A S) - (1)
                         Bingo - (ben_tilly)
                     gak - (cforde) - (5)
                         null and / - (ben_tilly) - (4)
                             dont forget pipe and redir | > and your example would be ok - (boxley) - (1)
                                 touch 'foo | bar > baz' - (ben_tilly)
                             Berkeley, Unix and something else - (cforde) - (1)
                                 It is easier to allow than to disallow - (ben_tilly)
             I'll bite - (cforde) - (1)
                 That sounds wrong - (wharris2)
         Unix Review -- can't connect - (kmself) - (1)
             Works here - DC area, Nav4/Win32. -NT - (Another Scott)
         Heh. - (static)
         I thought I didn't know much about Linux... - (Meerkat)
         Re: Linux Test - (gdaustin)
         Late comer... - (folkert)

A....E....I....O....U....Some....Times....Y.
138 ms