|
|
|
|
|
by collinfunk
57 days ago
|
|
Well the TOCTOU issues do not require you to run untrusted scripts to be exploited. Another user on your system can use a legitimate command that you may run to make changes to files they shouldn’t be able to, or further escalate privileges. |
|
If you allow a completely untrusted user onto your system I think your chances of staying secure are low.