zlacker
[parent]
[thread]
5 comments
1. charci+(OP)
[view]
[source]
2026-02-03 20:52:55
If you have ssh installed, with network access it can ssh localhost to escape the sandbox.
replies(3):
>>senko+Y2
>>qwerto+n3
>>dist-e+a4
◧
2. senko+Y2
[view]
[source]
2026-02-03 21:08:06
>>charci+(OP)
Don't give it access to your ssh keys!
replies(1):
>>charci+h8
◧
3. qwerto+n3
[view]
[source]
2026-02-03 21:10:51
>>charci+(OP)
You can consider these agents criminals, or treat them like babies. Both can do harm for a while, but one offers a future.
◧
4. dist-e+a4
[view]
[source]
2026-02-03 21:15:01
>>charci+(OP)
`ssh localhost` doesn't work for me. maybe because I have enabled only key-based ssh and my user key is not in authorized_keys? am I missing something?
replies(1):
>>charci+U7
◧◩
5. charci+U7
[view]
[source]
[discussion]
2026-02-03 21:34:48
>>dist-e+a4
You are right in that it would still need to authenticate.
◧◩
6. charci+h8
[view]
[source]
[discussion]
2026-02-03 21:36:37
>>senko+Y2
Yes, it should have its own dedicated key instead of sharing one of your own.
[go to top]