Toot

Written by thepwnicorn on 2025-01-19 at 00:19

@wdormann sending the content of env vars back to Snyk should have been a no go, because they would have almost certainly contained secrets of CI environments or dev systems, if a dependency confusion attack were successful.

=> More informations about this toot | View the thread | More toots from thepwnicorn@infosec.exchange

Mentions

=> View wdormann@infosec.exchange profile

Tags

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/113852151130593897
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
215.558753 milliseconds
Gemini-to-HTML Time
0.278345 milliseconds

This content has been proxied by September (3851b).