Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.debian.user > #244732
| From | Andrei POPESCU <andreimpopescu@gmail.com> |
|---|---|
| Newsgroups | linux.debian.user |
| Subject | Re: Security |
| Date | 2022-01-28 17:30 +0100 |
| Message-ID | <DKCim-7fX-15@gated-at.bofh.it> (permalink) |
| References | <DJAiB-7jg-3@gated-at.bofh.it> <DJCkq-hG-9@gated-at.bofh.it> <DJVn4-4Zi-3@gated-at.bofh.it> <DKqqR-84C-1@gated-at.bofh.it> |
| Organization | linux.* mail to news gateway |
[Multipart message — attachments visible in raw view] - view raw
On Jo, 27 ian 22, 21:44:07, Nicholas Geovanis wrote: > On Wed, Jan 26, 2022, 12:39 PM Andrei POPESCU <andreimpopescu@gmail.com> > > > > And please don't bother to reply with "there are no other users on this > > system I should worry about", the bad guys could still find ways to get > > in, e.g. via a compromised browser, regardless if you are behind a > > firewall or not[1]. > > Servers don't have browsers installed on them, for exactly this reason. (already addressed by Vincent) > I think your argument above that is a red herring. Because file attribute > modification detection should be running regularly. On home machines as > well as servers. Without that, "keeping the system up-to-date" will not > prevent intrusion. I'm missing the connection between this vulnerability and file attribute modification detection, please elaborate. Kind regards, Andrei -- http://wiki.debian.org/FAQsFromDebianUser
Back to linux.debian.user | Previous | Next — Previous in thread | Find similar | Unroll thread
Security Polyna-Maude Racicot-Summerside <debian@polynamaude.com> - 2022-01-25 21:10 +0100
Re: Security Andy Smith <andy@strugglers.net> - 2022-01-25 21:50 +0100
Re: Security Polyna-Maude Racicot-Summerside <debian@polynamaude.com> - 2022-01-25 22:00 +0100
Re: Security Nicholas Geovanis <nickgeovanis@gmail.com> - 2022-01-26 16:40 +0100
Re: Security Nate Bargmann <n0nb@n0nb.us> - 2022-01-25 23:20 +0100
Re: Security Andrei POPESCU <andreimpopescu@gmail.com> - 2022-01-26 19:40 +0100
Re: Security Nicholas Geovanis <nickgeovanis@gmail.com> - 2022-01-28 04:50 +0100
Re: Security Dan Ritter <dsr@randomstring.org> - 2022-01-28 14:20 +0100
Re: Security Nicholas Geovanis <nickgeovanis@gmail.com> - 2022-01-28 17:20 +0100
Re: Security Dan Ritter <dsr@randomstring.org> - 2022-01-28 19:00 +0100
Re: Security Vincent Lefevre <vincent@vinc17.net> - 2022-01-28 16:20 +0100
Re: Security Nicholas Geovanis <nickgeovanis@gmail.com> - 2022-01-28 17:30 +0100
Re: Security Richard Hector <richard@walnut.gen.nz> - 2022-01-30 13:40 +0100
Re: Security Reco <recoverym4n@enotuniq.net> - 2022-01-30 14:20 +0100
Re: Security Andrei POPESCU <andreimpopescu@gmail.com> - 2022-01-30 14:40 +0100
Re: Security Reco <recoverym4n@enotuniq.net> - 2022-01-30 17:50 +0100
Re: Security Andrei POPESCU <andreimpopescu@gmail.com> - 2022-02-04 09:50 +0100
Re: Security Reco <recoverym4n@enotuniq.net> - 2022-02-04 10:20 +0100
Re: Security <tomas@tuxteam.de> - 2022-02-04 10:20 +0100
Re: Security Vincent Lefevre <vincent@vinc17.net> - 2022-02-01 12:30 +0100
Re: Security Richard Hector <richard@walnut.gen.nz> - 2022-02-02 02:00 +0100
Re: Security Vincent Lefevre <vincent@vinc17.net> - 2022-02-02 15:10 +0100
Re: Security Andrei POPESCU <andreimpopescu@gmail.com> - 2022-01-28 17:30 +0100
csiph-web