PATH hijacking TL;DR: Setuid or root-run binary calls unqualified executable; attacker prepends $PATH. Stub — to be filled in. What it is TODO Preconditions / where it applies TODO Technique TODO Detection and defence TODO References TODO