| ▲ | pmm343 4 hours ago | |
The JFrog article is so sweaty...sort of "actually this is _good_ news". This whole mess points to the fundamental problem of running critical infrastructural services on open networks, and hoping that <your approach of choice to feeding/watering those services> keeps you safe. Just don't. | ||
| ▲ | pocksuppet 3 hours ago | parent [-] | |
Right. There are a few projects that can be generally trusted with internet exposure - like OpenSSH, Wireguard, nginx/Apache. Most other stuff should be kept behind some kind of firewall because it is just too likely to contain a serious vulnerability. | ||