Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

LPE has always been trivial on OS X... for the longest time, the passwordless-sudo timeout was not specific to the tty. So all you had to do was wait for someone to use sudo, and you would be able to get root.


Cool. Companies that go "I should use a LPE as part of my product" should still be chastised.




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: