Tell me about this QNX security flaw.

Something about logging into bin and then phdittoing to get access to the root password???

What version of QNX? 4.xx? If you don’t set the security up on your machine, then you can log into it as root. On the machine I just installed, the only account is root, so you can’t login as anything else. Of course you can log in as root since I didn’t add a passwd.

QNX, and especially QNX4 was never strong on security. If you want to run a QNX4 machine in a vunerable network, or a multi-user setup, you have to go out of your way to make it secure.


4.25. You basically log into the remote machine as bin, then phditto and use Photon to gain access to the root directory.