![]() |
|
#1
|
||||
|
||||
|
__________________
Scientific Linux 6.2, xubuntu 11.10 *2x, Linux mint 10, Linux mint 12, opensuse 11.4, windows vista, ubuntu 10.04 and windows xp |
|
#2
|
|||
|
|||
|
How is this useful, exactly? If Ninja runs as the normal root user, anyone who can elevate to root can kill it.
|
|
#3
|
|||
|
|||
|
I want to use ninja, but I can't see it or find it, sneaky little thing.
Mrk
__________________
http://www.dedoimedo.com All your base are belong to us Linux Systems Expert / Systems Programmer, Linux System Administrator, LPIC-1, LPIC-2 (WIP), GSEC, CCHD, CCHA |
|
#4
|
|||
|
|||
|
Quote:
Yeah. If an attacker has a code-path to a root owned process and can exploit that process, ninja won't be able to stop it. What it can help with, though, is stopping someone who only has user access on your box from escalating to root (i.e. by stopping them from starting a suid process and then exploiting it). Of course, this will do no good if they are running under your user ID in the first place (since you will have whitelisted all the suids for yourself). So, basically all this tool is good for is stopping a blacklisted user (who is not your user) from running SUID binaries. Not very helpful, imo. |
|
#5
|
||||
|
||||
|
I am having a hard time understanding the usefulness of this Ninja. Is this an Ubuntu thing?
__________________
FreeDOS, Haiku, PCLinuxOS, Slackware, Snow Leopard, Ubuntu, Ultimate Edition, Windows 7, Windows XP. (Primary OS, KDE) Living in Paradise!!
|
|
#6
|
|||
|
|||
|
Quote:
I had never heard of it before today either and I consider myself quite Linux security savvy. And, no, it will run on any Linux box, regardless of distro. But as I pointed out above, I think it is rather useless. |
|
#7
|
||||
|
||||
|
i also agree if he had a root access he can do anything same with if your system no-encrypted the he dont need even that all require is a live bootable cd of linux
but question how he had root access at 1st place specially from remote side. Quote:
![]()
__________________
Scientific Linux 6.2, xubuntu 11.10 *2x, Linux mint 10, Linux mint 12, opensuse 11.4, windows vista, ubuntu 10.04 and windows xp Last edited by mack_guy911 : October 4th, 2012 at 02:08 AM. |
|
#8
|
|||
|
|||
|
You missed my ninja reference ...
![]() Mrk
__________________
http://www.dedoimedo.com All your base are belong to us Linux Systems Expert / Systems Programmer, Linux System Administrator, LPIC-1, LPIC-2 (WIP), GSEC, CCHD, CCHA |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|