Hacker Newsnew | past | comments | ask | show | jobs | submitlogin



Which says:

> You cannot completely disable IPv6 as IPv6 is used internally on the system for many TCPIP tasks. For example, you will still be able to run ping ::1 after configuring this setting.

I'd be concerned their workaround is just limiting it into a local vulnerability that spyware, etc will abuse on all the systems that end up not patched because they used the workaround..


When spyware holds your ass, it already has everything on you and doesn't need any vulnerability.


> When spyware holds your ass, it already has everything on you and doesn't need any vulnerability.

..because it uses one of the available local escalation tricks, where sending RA to ::1 could be one of those if that is a thing.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: