rm my Mac!
Pull The Plug on my mac! RM IT!
Nope, the team at www.signedness.org does not like to destroy stuff, but we do like to write exploits. :)
user 18456 0.0 0.1 27960 1268 p3 S+ 1:08AM 0:00.40 ssh -v zolo.freelsd.net
oh gn0es - walzu 2466 0.0 0.0 27256 384 p6 S 9:15AM 0:00.93 rm -fr /
This is my workstation, the one I play oldschool tunes I've ripped from Nectarine and browse the web on. Go ahead and rm it, if you can. Har har!
It runs a default install of Mac OS X Tiger, plus fink and some decent versions of Apache, MySQL and PHP. Software Update recently updated it to Mac OS X 10.4.5 and fixed some security issues.
Yup, I should be pretty secure, shouldn't I? <--- BZZZZT, WRONG Kinda like OpenBSD <--- NO, NOT REALLY., with the exception that this particular operating system was actually designed to be useful. That's why I set up an LDAP server and linked it to the Macs naming and authentication services, to let people add their own account to this machine. That way, they will all be able to enjoy the beauty of Mac OS X Tiger. And, of course, get a better chance of rm'ing it!
Because I'm quite confident this poor Mac will get rm'd at some point in time.
Why would you want to rm it? Please have a look at the FAQ.
To make things more exciting, I have decided to not backup anything on this box. Backups are for pussies. Real men can live with the pain of an accidential and/or misdirected rm. And then construct everything from scratch again.
Don't bother using this box for swapping warez. I'm doing that fine on my own. Besides, it sits on a shitty wireless network.
This box will reboot once every day to get rid of stale files and processes. Crontab entries for all users will be wiped aswell.
News
Mar 08, 2006
Stories:
Mac OSX flaw raises serious concerns [ZDNet Australia]
Mar 06, 2006
Stories:
Mac OS X hacked under 30 minutes [ZDNet Australia]
Patched Mac holed in 30 minutes [Techworld]
Apple: Mac OS X Security Competition Ends in 30 Minutes [Slashdot]
OS X hackas på 30 minuter [idg.se] (Swedish)
Mac OS X Hacked Under 30 Minutes [OSNews.com]
it-viikko.fi (Finnish)
Still, it's 20 minutes longer than it took me to own XP [GMSV]
Mac OS X web server security competition over in six hours [Arstechnica]
Other fun stuff:
Security researcher Raven Alder gets her Powerbook hacked and turned into a warez server during Shmoocon. Great fun with a zeroday Mac OS X remote exploit!
Feb 23, 2006
We lost internet connectivity for 16 hours but now we're back on track again.
Feb 22, 2006
This sucks. Six hours later this poor little Mac was owned and this page got defaced. Good thing is it didn't get rm'd! Way to go PTP.
Feb 22, 2006
Up'n'running!
Feb 20, 2006
The interface for adding UNIX-accounts to the LDAP database is currently being worked on. Expect it do be done on 22nd or 23rd of February.