OpenBSD
Open in Telegram
Сool OpenBSD stuff @openbsd Feedback obsd@tuta.io Community: @openbsd_en @openbsd_ru @openbsdbr @OpenBSD_es OpenBSDjumpstart https://t.me/joinchat/EzTjLQuG8MdUSVqFS1xA4w Unofficial channel. Get OpenBSD: https://www.openbsd.org/
Show moreThe country is not specifiedTechnologies & Applications53 232
1 129
Subscribers
+224 hours
+147 days
+3830 days
Posts Archive
1 129
LPE and RCE in OpenSMTPD (CVE-2020-7247).
We discovered a vulnerability in OpenSMTPD, OpenBSD's mail server. This vulnerability is exploitable since May 2018 (commit a8e222352f, "switch smtpd to new grammar") and allows an attacker to execute arbitrary shell commands, as root.
https://www.openwall.com/lists/oss-security/2020/01/28/3
#opensmtpd #mail
1 129
OpenBSD supremacy, Laslo Hunhold.
A look at recent developments in OpenBSD and a discussion about how to include these advances in suckless tools.
https://suckless.org/conferences/2019/
#dev #video
1 129
OpenBSD: High-Availability Firewalling.
https://stuarthowlette.me.uk/posts/openbsd-firewall-ha/
#firewall #pf #carp
1 129
cloud-agent for OpenBSD.
This is a simple OpenBSD-specific agent that aims to handle provisioning and cloud initialization on public clouds such as Microsoft Azure and Amazon AWS. For OpenBSD on Azure, it is a minimal alternative to the WALinuxAgent.
https://github.com/reyk/cloud-agent
#cloud #github
1 129
WP2Static and OpenBSD.
Want to setup a WP2Static-friendly, minimal webserver vs using an off the shelf image? We detail the steps for setting up an optimized environment in OpenBSD, our preferred, secure by default, lightweight and easy to maintain operating system.
https://wp2static.com/developers/webserver-setup/
#wordpress #wp2static
1 129
Automating OpenBSD Installs.
https://xenotrope.blogspot.com/2018/04/ansible-week-bonus-automating-openbsd.html
#autoinstall
1 129
Creating Onion Services on OpenBSD.
https://cloudyday.tech.blog/2020/01/05/creating-onion-services-on-openbsd/
#tor
1 129
Suggestion: Replace Perl with Lua in the OpenBSD Base System.
Hmmm... 🤔 http://openbsd-archive.7691.n7.nabble.com/Suggestion-Replace-Perl-with-Lua-in-the-OpenBSD-Base-System-tt380393.html
#system #misc
1 129
This Metasploit module exploits a vulnerability in the OpenBSD ld.so dynamic loader (CVE-2019-19726). The _dl_getenv() function fails to reset the LD_LIBRARY_PATH environment variable when set with approximately ARG_MAX colons. This can be abused to load libutil.so from an untrusted path, using LD_LIBRARY_PATH in combination with the chpass set-uid executable, resulting in privileged code execution. This module has been tested successfully on OpenBSD 6.1 (amd64) and OpenBSD 6.6 (amd64).
https://packetstormsecurity.com/files/155764
#security
1 129
Lecture: A systematic evaluation of OpenBSD's mitigations.
OpenBSD markets itself as a secure operating system, but doesn't provide much evidences to back this claim. The goal of this talk is to evaluate how effective OpenBSD's security mitigation are, in a systematic, rational and comprehensive way...
https://fahrplan.events.ccc.de/congress/2019/Fahrplan/events/10519.html
p. s. isopenbsdsecu.re - coming soon
#security
1 129
HyperbolaBSD Roadmap
This will not be a "distro", but a hard fork of the OpenBSD kernel and userspace including new code written under GPLv3 and LGPLv3 to replace GPL-incompatible parts and non-free ones...
https://www.hyperbola.info/news/announcing-hyperbolabsd-roadmap/
#system
1 129
CarolinaCon 15: Writing Exploit-Resistant Code With OpenBSD.
OpenBSD is renowned for its security innovations and code quality. With its emphasis on code correctness, exploit mitigation techniques, and a rigorous development process, OpenBSD provides a rich platform and environment for developers to create robust software. This talk explores various OpenBSD programs, exploit mitigation techniques, tools, and development practices to show how you can use them to write code that is safe, robust, and resistant to exploits – even if your code is meant for platforms other than OpenBSD.
https://lteo.net/blog/2019/04/27/carolinacon-15-writing-exploit-resistant-code-with-openbsd/
#develop
1 129
OpenBSD: Local privilege escalation via S/Key and YubiKey.
OpenBSD, in a non-default configuration where S/Key or YubiKey authentication is enabled, allows local users to become root by leveraging membership in the auth group. This occurs because root’s file can be written to /etc/skey or /var/db/yubikey, and need not be owned by root.
https://allelesecurity.com/asa-2019-00653/
#security
1 129
Why computers suck and how learning from OpenBSD can make them marginally less horrible.
https://telegra.ph/Why-OpenBSD-is-marginally-less-horrible-12-05
#feedback
