lurklurk@lemmy.worldtoSneerClub@awful.systems•OAI employees channel the spirit of Marvin MinskyEnglish
5·
3 months agoIt uses system 2 thinking to make alterations to the plan (or idea). Rinse and repeat.
They probably meant to write system 1 thinking here.
the in depth technical details
TL;DR; sigalarm handler calls syslog which isn’t safe to call from a signal handler context.
Their example exploit needed about 10k attempts to get a remote shell so it’s not fast or quiet, but a neat find regardless