Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
weirdo28
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
weirdo28
5y ago
To do this semi-securly (because slack accepts regular passwords) you'd need validate the user's own mfa before handing out these mfa creds to prevent a slack account compromise from escalating... but slack can't do that unle
2.
▲
by
weirdo28
5y ago
Would recommend hashi vault in place of this which can work for human/non-human workflows and a pretty robust security model with better auditing and authorization than slack. https://www.vaultproject.io/docs/secre
3.
▲
OSSEC Privilege Escalation via Directory Traversal
(dark-sec.net)
3 points
by
weirdo28
8y ago
|
0 comments