zlacker

[parent] [thread] 5 comments
1. charci+(OP)[view] [source] 2026-02-03 20:52:55
If you have ssh installed, with network access it can ssh localhost to escape the sandbox.
replies(3): >>senko+Y2 >>qwerto+n3 >>dist-e+a4
2. senko+Y2[view] [source] 2026-02-03 21:08:06
>>charci+(OP)
Don't give it access to your ssh keys!
replies(1): >>charci+h8
3. qwerto+n3[view] [source] 2026-02-03 21:10:51
>>charci+(OP)
You can consider these agents criminals, or treat them like babies. Both can do harm for a while, but one offers a future.
4. dist-e+a4[view] [source] 2026-02-03 21:15:01
>>charci+(OP)
`ssh localhost` doesn't work for me. maybe because I have enabled only key-based ssh and my user key is not in authorized_keys? am I missing something?
replies(1): >>charci+U7
◧◩
5. charci+U7[view] [source] [discussion] 2026-02-03 21:34:48
>>dist-e+a4
You are right in that it would still need to authenticate.
◧◩
6. charci+h8[view] [source] [discussion] 2026-02-03 21:36:37
>>senko+Y2
Yes, it should have its own dedicated key instead of sharing one of your own.
[go to top]