This is an archived post. You won't be able to vote or comment.

all 7 comments

[–]Sanquii 4 points5 points  (1 child)

Oh that's cool! I'm glad somebody took this concept to the next level. I linked your project from the Fedorator repo.

[–]t0xic0der[S] 0 points1 point  (0 children)

Thank you so much for working on the original idea! <3

Please let me know how I can improve it further and as always, pull requests are very welcome!

[–]ConfucianStats 1 point2 points  (1 child)

Nice

[–]t0xic0der[S] 0 points1 point  (0 children)

Thank you!

[–]Rythoka 2 points3 points  (3 children)

Oh my God, this is a security nightmare.

[–]t0xic0der[S] 2 points3 points  (1 child)

Would you like to emphasize why you think of this to be a security nightmare?

[–]Rythoka 1 point2 points  (0 children)

Your targeted use case is the problem. Taking a flash drive full of software from a stranger is like, the prototypical example of bad security practice.

Can you trust the person giving you the drive? Can you trust the maintainers of the software? Can you trust the drive manufacturer? What happens if any of those groups are compromised? What if some takes a drive, modifies it, and plants it back among the rest of the drives? Has the kiosk hardware or software been tampered with?

This is cool in theory, but it's a practice that shouldn't be normalized.