Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Or if you know the distro, it is trivial to get the package containing the su executable and locate the address.


I compiled it myself, so that is not an option.


Presumably they only need to guess the flags you used then. There is really not all that much entropy there.

And I suspect doing so is fairly uncommon in production environments anyway.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: