| ▲ | choeger a day ago | |||||||||||||||||||
I read the agents used SSRF via artifactory to gain uncontrolled access to the net. Apparently their intended net access went through a tightly controlled proxy. Even that appears to be very risky, tbh. If I was to setup a sandbox for such a complex and autonomous system, I'd probably point them to an archive-like cache for net access and cut their comms at the package level. | ||||||||||||||||||||
| ▲ | izend 20 hours ago | parent | next [-] | |||||||||||||||||||
Why wasn't the traffic in/out of the boxes that the agents were running on monitored? | ||||||||||||||||||||
| ||||||||||||||||||||
| ▲ | lovich 6 hours ago | parent | prev [-] | |||||||||||||||||||
if you wanted to sandbox their access to the internet, why give them any physical access at all? | ||||||||||||||||||||