logoalt Hacker News

PhilipRomantoday at 8:13 PM1 replyview on HN

If you blindly TOFU ssh sessions, those can be pwned easily in many common use cases. Legacy software configurations like NFS with IP authentication will be bypassed. Realistically the most likely scenario is using your home as a VPN, or a DDOS node.


Replies

raggitoday at 9:57 PM

yeah, and it's not like people recently launched a coffee shop that accepts payments over tofu ssh and a shell provider doing the same