TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

SIEM logging plain text secrets from workstations? Is this normal?

2 点作者 redman259 个月前

1 comment

patrakov9 个月前
I was surprised by how many &quot;that&#x27;s OK&quot; answers this got. All known secrets should be either masked or tokenized, which means replacing them with either asterisks or an irreversible hash of the original value.<p>It&#x27;s a security bug if one cannot configure the masking or tokenization process. One should be able to specify the names of sensitive variables and regular expressions for known dangerous-to-log strings.