Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

With root privilege you can erase all of the audit logs. A malicious attack probably would do so if he/she cares about that.


You can't erase remote logs, or logs written to a write-only logging device (the one's I've seen seem essentially to be a serial port/usb device that emulates a line printer).




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: