logoalt Hacker News

alephnerdyesterday at 7:11 PM1 replyview on HN

This is a classic attack path that was already captured by plenty of EDRs/XDRs/CWPPs a couple years ago.


Replies

dangusyesterday at 7:14 PM

Right, why is their login user in the docker group? Mine sure isn’t.

show 4 replies