๊ฐ€์ž… ํ›„ ์ดˆ๋Œ€ ๋งํฌ๋ฅผ ๊ณต์œ ํ•˜๋ฉด ๋™์˜์ƒ ์žฌ์ƒ ๋ฐ ์ดˆ๋Œ€ ๋ณด์ƒ์„ ๋ฐ›์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

Tay ๐Ÿ’–
@tayvano_
dont believe their lies ๐ŸฆŠ ๐Ÿ’–๐Ÿ—ก๏ธ
๊ฐ€์ž… January 2009
7.9K ํŒ”๋กœ์ž‰ ์ค‘    90.2K ํŒฌ
As is tradition, Microsoft can ship security things (once they themselves get rekt.)
GitHub shipped bulk credential revocation for Enterprise. One action cuts off compromised credentials across the entire org during an active incident. Recent attacks have shown what happens when revocation is slow or incomplete. The Trivy compromise came back for a second round because the first cleanup left at least one credential alive. Incomplete rotation is what keeps attacks going after the initial breach.
๋” ๋ณด๊ธฐ