{"id":1818,"date":"2005-11-10T01:08:50","date_gmt":"2005-11-10T06:08:50","guid":{"rendered":"http:\/\/www.riggedup.net\/?p=1818"},"modified":"2005-10-27T13:10:10","modified_gmt":"2005-10-27T18:10:10","slug":"ssh-security-holes","status":"publish","type":"post","link":"https:\/\/www.riggedup.net\/blog\/2005\/11\/10\/ssh-security-holes\/","title":{"rendered":"SSH Security Holes"},"content":{"rendered":"<blockquote><p><i>I recently discovered that a few important machines at a certain educational institute&#8217;s datacenter allows all students, faculty, and staff to authenticate against them via ssh. Everyone&#8217;s shells appear to be set to \/bin\/false (or some derivative) on said machines, so the only thing you&#8217;ll see after you authenticate is the login banner and your connection will close. I thought to myself, &#8220;Fine, no shell for me. I wonder if port forwarding works?&#8221; <\/p>\n<p><a href=\"http:\/\/www.csh.rit.edu\/~psionic\/articles\/ssh-security\/\" target=\"_blank\">SSH Security and You <\/a><\/i><\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>I recently discovered that a few important machines at a certain educational institute&#8217;s datacenter allows all students, faculty, and staff to authenticate against them via ssh. Everyone&#8217;s shells appear to be set to \/bin\/false (or some derivative) on said machines, so the only thing you&#8217;ll see after you authenticate is the login banner and your [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[],"_links":{"self":[{"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/posts\/1818"}],"collection":[{"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/comments?post=1818"}],"version-history":[{"count":0,"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/posts\/1818\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/media?parent=1818"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/categories?post=1818"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.riggedup.net\/blog\/wp-json\/wp\/v2\/tags?post=1818"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}