← Back to context Comment by brcmthrowaway 3 hours ago How were the credentials stolen? 3 comments brcmthrowaway Reply free652 3 hours ago Read from the ENV variables of a container. ahofmann 2 hours ago And someone was stupid enough to put a reusable tailscale auth key in there. selfmodruntime 36 minutes ago I'm willing to bet that 95% of people using tailscale for CI have a 90 day (max days) ephemeral, reusable auth key somewhere in their setup.
free652 3 hours ago Read from the ENV variables of a container. ahofmann 2 hours ago And someone was stupid enough to put a reusable tailscale auth key in there. selfmodruntime 36 minutes ago I'm willing to bet that 95% of people using tailscale for CI have a 90 day (max days) ephemeral, reusable auth key somewhere in their setup.
ahofmann 2 hours ago And someone was stupid enough to put a reusable tailscale auth key in there. selfmodruntime 36 minutes ago I'm willing to bet that 95% of people using tailscale for CI have a 90 day (max days) ephemeral, reusable auth key somewhere in their setup.
selfmodruntime 36 minutes ago I'm willing to bet that 95% of people using tailscale for CI have a 90 day (max days) ephemeral, reusable auth key somewhere in their setup.
Read from the ENV variables of a container.
And someone was stupid enough to put a reusable tailscale auth key in there.
I'm willing to bet that 95% of people using tailscale for CI have a 90 day (max days) ephemeral, reusable auth key somewhere in their setup.