2026-08-21 08:53:52
I've done a wee experimental feed aggregator for #Gaza #blogs here:
https://www.journeyman.cc/~simon/tmp/gazab
"do not run sudo su inside a tmux window"? Anyone who can attach to your tmux can already set the moral equivalent of `alias sudo="tee -a /tmp/exfiltration | sudo` in your bashrc. The difference in severity is just that it leaves different traces and that it changes the required timing for compromise by a few minutes.
The biggest vulnerability in sudo is not in the code config, but in people's mental model of their system.
@…
@…
@…
@…