Skip to content

Comment on Black Hat 2024: Secure Shells in Shambles [pdf]parent

Comments

4th bullet from the bottom sounds credible to me:

Supports the execution of shell commands on behalf of valid SPA packets.

Even if it were only a statically configured command (no idea if it is or isn't), as soon as that door is opened, it leads to a morass.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.