logoalt Hacker News

andaiyesterday at 1:20 PM1 replyview on HN

Doesn't the agent already have bash though?

My current security model is to give it a separate Linux user.

So it can blow itself up and... I think that's about it?


Replies

zahlmanyesterday at 3:39 PM

> Doesn't the agent already have bash though?

You don't have to give it bash, depending on your tools at least.

> So it can blow itself up and... I think that's about it?

And exfiltrate data via the Internet, fill up disk space...