TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Mind your Logs: How a build log from a Jenkins leaked everything

101 点作者 LuD1161超过 5 年前

4 条评论

Stratoscope超过 5 年前
&gt; <i>As I was reading the article, I found the author mentioned some of the dorks for Jenkins and Sonarqube.</i><p>I wonder if anyone could explain what &quot;dork&quot; means in this context? My searches are only finding the common derogatory meaning, e.g. &quot;a socially inept person.&quot;
评论 #21769337 未加载
评论 #21771157 未加载
评论 #21770020 未加载
评论 #21769319 未加载
malux85超过 5 年前
Why are these Jenkins servers exposed to the public internet?<p>Serves them right for such sloppy ops
评论 #21771465 未加载
评论 #21769547 未加载
评论 #21769720 未加载
评论 #21773269 未加载
评论 #21771998 未加载
lol768超过 5 年前
I feel like the poking around on Slack crossed the line a bit. Should&#x27;ve gone to be disclosed responsibly before it go to that point.
评论 #21772254 未加载
o-__-o超过 5 年前
The only thing that keeps popping into my mind as I read this: is it illegal to hack foreign computer systems?<p>What are the varying levels of legality? (e.g. hacking a French company would see you extradited, hacking Iran&#x2F;North Korea could bring Federal charges, but Russia.. China..?)
评论 #21769840 未加载
评论 #21769844 未加载
评论 #21770161 未加载
评论 #21773403 未加载
评论 #21770754 未加载