Well, in that case, you can detect this new scenario with a simple "lsof"...
If they can be expected to check the link count as defense, surely they can
also check for already open FDs for files that once were perfectly accessible
when they change the perms to render them inaccessible...
Also, while changing the perms on the directory, why not go the further step
of changing the file perms as well? It would seem a logical and reasonable
thing to do...
Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds