Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I love how it says "Standalone PoC. Python 3.10+ stdlib only (os, socket, zlib). Targets /usr/bin/su by default; pass another setuid binary as argv[1]."

Except you can't pass another setuid binary as argv[1] because the AI writing this slop never added that feature to this python script.

I can't get it to work on any distro i've tried.



The landing page is just bad. There's no way around it.

The bug is pretty great. I feel bad for the researchers who did the work.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: