paris/i-02e1488c6b3b7615d
by SadServersMore by SadServers
_chrony 594 0.0 0.7 10852 3724 ? S 19:51 0:00 /usr/sbin/chr_chrony 595 0.0 0.1 10724 552 ? S 19:51 0:00 /usr/sbin/chrroot 612 0.0 3.7 26612 17392 ? Ss 19:51 0:00 /usr/bin/pythpgrades/unattended-upgrade-shutdown --wait-for-signal root 684 0.0 0.0 0 0 ? R 19:51 0:00 [kworker/u4:4admin 688 0.0 0.9 6740 4496 pts/0 S<s+ 19:51 0:00 bash -l admin 692 0.0 4.1 98188 19468 pts/0 D<l+ 19:51 0:00 /usr/bin/pyth-t paris/i-0d762abe3a06769e7 -q -i 2 /var/log/cast/i-0d762abe3a06 admin 695 0.0 3.0 24456 14384 pts/0 S<+ 19:51 0:00 /usr/bin/pyth-t paris/i-0d762abe3a06769e7 -q -i 2 /var/log/cast/i-0d762abe3a06 admin 696 0.0 0.1 2480 572 pts/1 S<s 19:51 0:00 sh -c /bin/baadmin 697 0.0 1.0 6952 4808 pts/1 S< 19:51 0:00 /bin/bash root 931 0.0 0.0 0 0 ? I 19:56 0:00 [kworker/1:1]admin 932 0.0 0.6 8648 3164 pts/1 R<+ 19:56 0:00 ps aux admin@i-0d762abe3a06769e7:~$ cu
paris/i-0d762abe3a06769e7 01:18
by SadServersadmin@i-001eda64855cc97ed:~$ id -a uid=1000(admin) gid=1000(admin) groups=1000(admin),4(adm),20(dialout),24(cdrom),udio),30(dip),44(video),46(plugdev),109(netdev) admin@i-001eda64855cc97ed:~$ sudo vim We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: sudo: a password is required admin@i-001eda64855cc97ed:~$ sudo -l
paris/i-001eda64855cc97ed 03:34
by SadServersile="unconfined" name="/usr/bin/man" pid=336 comm="apparmor_parser" [ 4.839178] audit: type=1400 audit(1739149489.855:5): apparmor="STATUS" operaile="unconfined" name="man_filter" pid=336 comm="apparmor_parser" [ 4.853673] audit: type=1400 audit(1739149489.855:6): apparmor="STATUS" operaile="unconfined" name="man_groff" pid=336 comm="apparmor_parser" [ 4.870219] audit: type=1400 audit(1739149489.891:7): apparmor="STATUS" operaile="unconfined" name="tcpdump" pid=338 comm="apparmor_parser" [ 4.884118] audit: type=1400 audit(1739149489.907:8): apparmor="STATUS" operaile="unconfined" name="/usr/sbin/chronyd" pid=339 comm="apparmor_parser" [ 4.884121] audit: type=1400 audit(1739149489.927:9): apparmor="STATUS" operaile="unconfined" name="lsb_release" pid=337 comm="apparmor_parser" [ 56.427427] IPv6: ADDRCONF(NETDEV_CHANGE): ens5: link becomes ready [ 58.862552] device-mapper: uevent: version 1.0.3 [ 58.867273] device-mapper: ioctl: 4.43.0-ioctl (2020-10-01) initialised: dm-dadmin@i-0db84b7794affbe97:~$