@kuramanga @sortiecat Or, you could lobby to make them upgrade to dropbear.
-
-
Replying to @laurentbercot
@laurentbercot@kuramanga@sortiecat Dropbear actually has really bad security design, like NEVER dropping root so it can remove utmp lines.3 replies 0 retweets 0 likes
Replying to @kuramanga
@kuramanga @laurentbercot @sortiecat No, it's even more basic than privsep. You should always drop root immediately after auth, or sooner.
4:26 PM - 15 Jan 2016
1 reply
1 retweet
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.