Hacker News new | ask | show | jobs
by tonymet 109 days ago
Admin tasks are public in phabricator so it would be trivial to review chores and place malware in the chore's scope
1 comments

Which only makes it that much more important to review everything you're running with a privileged account, right?

And if it really is as trivial as you say it should be fixed ASAP.

I mean it's trivial for any attacker to discover admin tasks and know where to place malicious code for the admin tasks to execute it.