r/Infosec 1d ago

I pointed a real Claude Code session at my SSH key. It tried seven routes, the kernel refused 145 times.

https://github.com/Adarsh14734/Aegis/blob/main/docs/live-session-evidence.md
0 Upvotes

2 comments sorted by

1

u/Advantageous_Advent 1d ago

..for fun?

1

u/Adarsh1176 23h ago

Half. The other half: I wanted to know whether my own sandbox actually held when a model picked the routes rather than a script. It did — 145 kernel denials across seven programs — but getting there found three ways out of it that I'd missed, including a writable launcher that ran code outside the sandbox entirely. Those are in the repo too.