who-sudod Source on GitHub: Audit macOS Auth Prompts Down to the Call Chain
zats · x · 2026-09-05
Follow-up to zats's who-sudod announcement with the GitHub repo (auditable source). Components include a PAM module, terminal sudo reader, installer and tests, to detect SecurityAgent/LocalAuthentication dialogs and hidden terminal sudo requests and surface the requester's process chain. Same story as the main post — see that entry for details.
Related event: who-sudod Reveals Which Process Is Asking for Your macOS Password(3 posts)→
More from coding & agent
- Supermemory hits ~6-fig MRR, opens affiliate program with 30% recurring commission — julianweisser · 2026-09-05
- After ChatGPT, Claude & Grok All Went Dark, One User's 3-Machine Local AI Lab Kept Running — cocktailpeanut · 2026-09-05
- Almost all agent sandbox breakouts came from explicit hacking goals, argues Rob LeClerc — robleclerc · 2026-09-05
- Open-source MCP server brings offline Vedic astrology calculations to LLMs — Weak_Engine_8501 · 2026-09-05
- Role Weaver: Open-Source Tool Gives NWN Characters Persistent Memory and Personality — RoleWeaver · 2026-09-05
- Agent Process lets users define MCP-style tools on websites that don't support MCP — msign · 2026-09-05