action #133472
open
Added by okurz 10 months ago.
Updated 10 months ago.
Category:
Feature requests
Description
Motivation¶
With openqa.opensuse.org now served from PRG2 it's a good opportunity to check how secure it is. So we should try with pentesting ourselves if and where any vulnerabilities are.
"secure" in which way? Which privilege boundaries and attack vectors are relvant here?
okurz wrote:
Motivation¶
With openqa.opensuse.org now served from PRG2 it's a good opportunity to check how secure it is. So we should try with pentesting ourselves if and where any vulnerabilities are.
Since of the sensitiveness of the activity, can be a good idea to talk internally with security team.
Makes sense?
pperego wrote:
Since of the sensitiveness of the activity, can be a good idea to talk internally with security team.
Makes sense?
Sure. I already brought it up there :)
Also available in: Atom
PDF