Elektrine lite

← Feed

@Colinvparker@mathstodon.xyz

Post #4006967

2026-07-21 13:31 UTC

@syphist@zoner.work @vogelchr@chaos.social @faheus@chaos.social I think it makes the most sense if you imagine they started with a non-IP based communication. Imagine you had UART or something simple coupled onto the power line. Then this whole exploit goes away. Your security focuses on possible malicious traffic over the power line, which isn’t a problem as far as we can tell. root/root is fine in that case because the only thing that can send packets to sshd is hardware you control. Leave it open so a technician can log in easily with an Ethernet jack. But when you switch to a power line format that tunnels through IP, and all of a sudden Linux will treat incoming packets on the plug interface the same as incoming packets on any other interface, and route them to sshd, which likely never was intended or foreseen.

Replies (0)

No replies.