|
|
|
|
|
by jrochkind1
1508 days ago
|
|
I found the email I received about the logdrain today to be particularly confusing. "any secrets related to it" indeeed. The specific wording in the email was... "We recommend updating and refreshing the credentials used with those log drains as soon as possible." I'm still not entirely sure if I've reset/rotated everything I need to, what is "any credentials used with"? Neither the email nor any docs it linked to was clear about exactly what they are suggesting be rotated. That message wasn't very specific, while also they're not providing the context about the breach that one could use to fill in the gaps. At this point it kinds of sounds like... everything there is was compromised? |
|
Example: https://datadog.com/logs?api_key=abc123