Hacker News (curated)new | past | comments | ask | show | jobs| show hidden

No, the above attack writes that function into bashrc, meaning the next time the user runs sudo themselves, you harvest their password.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact | github