zlacker

[parent] [thread] 0 comments
1. packtr+(OP)[view] [source] 2025-01-05 21:39:06
> Restricting arbitrary downloads from curl, wget or bash (or better, any binary) makes these attacks pretty much useless.

Any advice what that looks like for a docker container? My border firewall isn't going to know what binary made the request, and I'm not aware of per-process restrictions of that kind

[go to top]