OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Vuln-Dev Archives: Re: Unix * weirdness

Re: Unix * weirdness


Subject: Re: Unix * weirdness
From: Scott Hardy (hardyRAINEY.BLUENEPTUNE.COM)
Date: Sat Jan 01 2000 - 16:37:55 CST


Yes, that is an ancient "feature" that is well known. You used to
be able to use 'touch' on most systems to make files like that, now
on many (e.g. Solaris) you need to do something like:

echo " ">>'-rf *'

  ...to make newbie-trap files.

Just another good reason to leave '.' out of your path statement.

You can find a similar "feature" in most ftp's mget, where files
named '|sh' and such will execute commands.

-- S.



This archive was generated by hypermail 2b27 : Sat Jan 01 2000 - 19:15:13 CST