sudo passwords (w/o shipped audit logs) are security theater as one can just shim tty/shell/sudo. Including all desktop machines. Discuss.
-
-
Replying to @FiloSottile
I think theoretically, you can mitigate that with root-owned
$HOME and Yama? but I'm not sure whether anyone actually does that1 reply 0 retweets 0 likes
Replying to @tehjh @FiloSottile
actually: nah, this wouldn't work
4:26 PM - 24 Aug 2016
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.