Hacker News new | ask | show | jobs
by mschuster91 2345 days ago
Let's imagine your JIRA is insecure, someone owns it and obtains RCE, then does a privilege escalation on the host, whoops suddenly all services are accessible whereas that would have required more steps and owning in the old one-vm/bare metal-server-per-service model.
1 comments

Escaping properly namespaced/pivot_root'ed environment and owning a host is non-trivial too.