Zum Hauptinhalt springen
Echtzeit-Radar & Feeds
Alle RSS Feeds ➔
👥 Community & Social
Windows Tipps & SecurityGrafikkarte vor Überhitzung schützen: So geht’s(25.09.2026 um 08:00 Uhr)
••••••••••
Windows Tipps & SecurityGrafikkarte vor Überhitzung schützen: So geht’s(25.09.2026 um 08:00 Uhr)
••••••••••
Intelligence View
⚡ tsecurity.de Intelligence

Need to ask password when launching reboot command

Hi, I need to be prompted for the password when I launch the reboot command. I modified the sudoers file, but it doesn't work. I tried to uncomment the Defaults secure_path but adding the path /sbin, but it doesn't work. This is my sudoers…

0
↗ Quelle (reddit.com)
Reagiere als Erste:r — dein Feedback zählt!

Hi, I need to be prompted for the password when I launch the reboot command. I modified the sudoers file, but it doesn't work.
I tried to uncomment the Defaults secure_path but adding the path /sbin, but it doesn't work.
This is my sudoers file

## sudoers file.

##

## This file MUST be edited with the 'visudo' command as root.

## Failure to use 'visudo' may result in syntax or file permission errors

## that prevent sudo from running.

##

## See the sudoers man page for the details on how to write a sudoers file.

##

##

## Host alias specification

##

## Groups of machines. These may include host names (optionally with wildcards),

## IP addresses, network numbers or netgroups.

# Host_Alias WEBSERVERS = www1, www2, www3

##

## User alias specification

##

## Groups of users. These may consist of user names, uids, Unix groups,

## or netgroups.

# User_Alias ADMINS = millert, dowdy, mikef

##

## Cmnd alias specification

##

## Groups of commands. Often used to group related commands together.

# Cmnd_Alias PROCESSES = /usr/bin/nice, /bin/kill, /usr/bin/renice, \

# /usr/bin/pkill, /usr/bin/top

#

# Cmnd_Alias REBOOT = /sbin/halt, /sbin/reboot, /sbin/poweroff

#

# Cmnd_Alias DEBUGGERS = /usr/bin/gdb, /usr/bin/lldb, /usr/bin/strace, \

# /usr/bin/truss, /usr/bin/bpftrace, \

# /usr/bin/dtrace, /usr/bin/dtruss

#

# Cmnd_Alias PKGMAN = /usr/bin/apt, /usr/bin/dpkg, /usr/bin/rpm, \

# /usr/bin/yum, /usr/bin/dnf, /usr/bin/zypper, \

# /usr/bin/pacman

##

## Defaults specification

##

## Preserve editor environment variables for visudo.

## To preserve these for all commands, remove the "!visudo" qualifier.

Defaults!/usr/bin/visudo env_keep += "SUDO_EDITOR EDITOR VISUAL"

##

## Use a hard-coded PATH instead of the user's to find commands.

## This also helps prevent poorly written scripts from running

## arbitrary commands under sudo.

Defaults secure_path="/usr/local/sbin:/usr/local/bin:/usr/bin:/sbin"

##

## You may wish to keep some of the following environment variables

## when running commands via sudo.

##

## Locale settings

# Defaults env_keep += "LANG LANGUAGE LINGUAS LC_* _XKB_CHARSET"

##

## Run X applications through sudo; HOME is used to find the

## .Xauthority file. Note that other programs use HOME to find

## configuration files and this may lead to privilege escalation!

# Defaults env_keep += "HOME"

##

## X11 resource path settings

# Defaults env_keep += "XAPPLRESDIR XFILESEARCHPATH XUSERFILESEARCHPATH"

##

## Desktop path settings

# Defaults env_keep += "QTDIR KDEDIR"

##

## Allow sudo-run commands to inherit the callers' ConsoleKit session

# Defaults env_keep += "XDG_SESSION_COOKIE"

##

## Uncomment to enable special input methods. Care should be taken as

## this may allow users to subvert the command being run via sudo.

# Defaults env_keep += "XMODIFIERS GTK_IM_MODULE QT_IM_MODULE QT_IM_SWITCHER"

##

## Uncomment to disable "use_pty" when running commands as root.

## Commands run as non-root users will run in a pseudo-terminal,

## not the user's own terminal, to prevent command injection.

# Defaults>root !use_pty

##

## Uncomment to run commands in the background by default.

## This can be used to prevent sudo from consuming user input while

## a non-interactive command runs if "use_pty" or I/O logging are

## enabled. Some commands may not run properly in the background.

# Defaults exec_background

##

## Uncomment to send mail if the user does not enter the correct password.

# Defaults mail_badpass

##

## Uncomment to enable logging of a command's output, except for

## sudoreplay and reboot. Use sudoreplay to play back logged sessions.

## Sudo will create up to 2,176,782,336 I/O logs before recycling them.

## Set maxseq to a smaller number if you don't have unlimited disk space.

# Defaults log_output

# Defaults!/usr/bin/sudoreplay !log_output

# Defaults!/usr/local/bin/sudoreplay !log_output

# Defaults!REBOOT !log_output

# Defaults maxseq = 1000

##

## Uncomment to disable intercept and log_subcmds for debuggers and

## tracers. Otherwise, anything that uses ptrace(2) will be unable

## to run under sudo if intercept_type is set to "trace".

# Defaults!DEBUGGERS !intercept, !log_subcmds

##

## Uncomment to disable intercept and log_subcmds for package managers.

## Some package scripts run a huge number of commands, which is made

## slower by these options and also can clutter up the logs.

# Defaults!PKGMAN !intercept, !log_subcmds

##

## Uncomment to disable PAM silent mode. Otherwise messages by PAM

## modules such as pam_faillock will not be printed.

# Defaults !pam_silent

##

## Runas alias specification

##

##

## User privilege specification

##

root ALL=(ALL:ALL) ALL

## Uncomment to allow members of group wheel to execute any command

%wheel ALL=(ALL:ALL) ALL

## Same thing without a password

# %wheel ALL=(ALL:ALL) NOPASSWD: ALL

## Uncomment to allow members of group sudo to execute any command

# %sudo ALL=(ALL:ALL) ALL

## Uncomment to allow any user to run sudo if they know the password

## of the user they are running the command as (root by default).

# Defaults targetpw # Ask for the password of the target user

# ALL ALL=(ALL:ALL) ALL # WARNING: only use this together with 'Defaults targetpw'

## Read drop-in files from /etc/sudoers.d

@/includedir /etc/sudoers.d

Can you help me fix the issue?

submitted by /u/ydwons
[link] [comments]

1. Sofort-Triage & Abwehrmaßnahmen

SOC Incident Playbook: Remote Code Execution (RCE) Defense
Syntax validiert (0 Fehler)
title: Detect Exploitation - Need to ask password when launching reboot command
id: 4df5d9e9-fd10-440b-b2f7-08e77646b7c2
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
  - https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-27
logsource:
  category: network_connection
  product: any
detection:
  selection:
      CommandLine|contains:
        - 'exploit'
  condition: selection
falsepositives:
  - Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
  - attack.initial_access
  - attack.t1068
Syntax validiert (0 Fehler)
rule CTI_Threat_Indicator {
    meta:
        author = "iShareStuff CTI Automated Detection Engine"
        date = "2026-09-27"
        description = "YARA Signature for "
    strings:
        $str = "Need to ask password when laun" ascii wide
    condition:
        any of them
}
Syntax validiert (0 Fehler)
index=security sourcetype IN ("cisco:asa", "pan:traffic", "zeek_conn", "suricata", "WinEventLog:Security")
("Need to ask password when launching rebo")
| stats count earliest(_time) as first_seen latest(_time) as last_seen by src_ip, dest_ip, dest_host, signature
| eval first_seen=strftime(first_seen, "%Y-%m-%d %H:%M:%S"), last_seen=strftime(last_seen, "%Y-%m-%d %H:%M:%S")
| sort - count
Syntax validiert (0 Fehler)
message: "*Need to ask password when launching rebo*"
Syntax validiert (0 Fehler)
CommonSecurityLog
| where Message has "Need to ask password when launching rebo"
| summarize EventCount = count(), FirstSeen = min(TimeGenerated), LastSeen = max(TimeGenerated) by SourceIP, DestinationIP, DestinationPort, Activity
| extend DetectionRule = "iShareStuff-CTI-Compiled"
| sort by EventCount desc

2. Cyber Threat Intelligence & Forensik

CTI Threat Relationship Graph3 Knoten / 2 Relationen
CVE / Incident Software MITRE ATT&CK CWE Weakness IoC
🎯
MITRE ATT&CK Matrix Navigator 14 Taktiken
Identifiziert: T1068Exploitation for Privilege Escalation
Reconnaissance
-
Resource Development
-
Initial Access
Execution
Persistence
-
Privilege Escalation
Defense Evasion
Credential Access
-
Discovery
-
Lateral Movement
-
Collection
-
Command and Control
Exfiltration
-
Impact
tsecurity.de Cognitive Threat RAG
Fokus-Vektor:

Analyse für identifizierte Bedrohung auf Basis von Live-CTI (ENISA EUVD): CVSS 0.0 · EPSS 0.0% · CISA KEV: nein. Handlungsableitung aus den verlinkten Hersteller-Quellen.

🛡️ Angriffsfläche & Exposure

Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.

⚡ Empfohlene Sofortmaßnahmen
  • 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
  • 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
  • 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Need to ask password when launching reboot command

Thematisch verwandte Begriffe: Need, password, when, launching · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

💬 Kommentare werden geladen…
Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-100739 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project…
Advisory →
tsecurity.de Icon
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag