> I was checking for passwordless accounts with 'logins -p'.
> None was found. However, I understand toor doesn't have
> passwd by default, and I never touched it, so I expected
> logins -p to show toor, but it didn't.
> Just to check I also tried to su toor with root passwd - no access. 
> Please can somebody clarify if toor does indeed have
> passwd.

toor, like many other system accounts, by default has its password entry set
to '*' which indicates that password authenictation is disabled for that
account.  (See the passwd(5) manpage for details.)
This means that unless you set a password for toor you cannot login as toor,
so the mere presence of that account is not a security problem.

