0

I've been offered a free Secure Shell at a friends server. However, I was wondering if it might be insecure to join this server from my personal computer at home - may my computer pose any security risks open for attacks from him whilst being connected to his server?

Note that this friend and I barely know each other, thus I cannot be sure that he doesn't have any hidden & bad intentions.

  • 1
    If you barely know this person, why are you calling him _"a friend"_, wouldn't _"an acquaintance"_ or similar be more appropriate and help clarify the arrangement better in a question that has a lot to do with trust? – TildalWave Dec 10 '13 at 09:43

1 Answers1

1

If it's somebody you barely know then they aren't a friend, but an acquaintance. There's an important difference here, I'd trust a friend to offer me a shell in good faith, but with an acquaintance I would not have a high level of trust.

That being said accepting a shell login from someone you don't know that well is a low risk to your system as there are few options there for him to attack you through your ssh client directly. The real risks come from being on the system itself:

  1. You don't know what he's doing. If he's engaging in criminal activity and you are logging into the same system as him you could end up being investigated
  2. Whatever you do on the system is available to him. If you write code or store personal information he could view it, if you use it for browsing he can see your history
  3. Downloads from the system could be used to attack you. This is the direct risk to your system.

How much of a risk this all adds up to be depends on how well you know this person and their reputation, what you plan to do with the offered shell, and what you have of value (are you a target). If you make sure your system and ssh client are all up to date and use good sense you shouldn't run into too many problems.

Just remember to practice good user ethics. this person has offered you something, don't abuse it by doing anything illegal or unethical with it. Also, take care not to mess with his server.

GdD
  • 17,291
  • 2
  • 41
  • 63
  • 1
    That was what paranoid me suspected it to be like - thanks for straightening it out for me! Golden answer =) P.S; I _am_ really grateful that he is willing to offer me a shell on his server, so I'll _absolutely not_ abuse this his kindness of course. – user3042429 Dec 10 '13 at 17:16