PaulDotCom mailing list archives

Re: With full read access what would you read (Part 2 - Linux Answer)


From: Mike Patterson <mike () snowcrash ca>
Date: Tue, 02 Nov 2010 16:30:53 -0400

On 2010/11/02 4:15 PM, Craig Freyman wrote:
This is the sister thread to Robin's question from earlier in the day. With
read only access to a Linux file system, other than shadow and passwd files,
what do you look for?

/home/*/.ssh/*
/home/*/.gnupg/*
(and s/home/root/ for the above)

are the obvious ones.  Also dotfiles for SQL DBs (.mysql?) that might
have embedded credentials.

Mike
_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com


Current thread: