← Back to context Comment by tgv 10 hours ago Still, it doesn't have to ping back, and ssh can (should) be very restrictive. 2 comments tgv Reply Gigachad 9 hours ago Ping and ssh are pretty much never the things being hacked though. Turn password auth off and it’s very secure.What gets hacked all the time is the actual web app itself. Which has to be exposed to be useful. tgv 2 hours ago I imagine it pays off to find weaknesses in openssl and sshd and the other gateways. There are some ubiquitous web frameworks, but ssh is nearly universal.
Gigachad 9 hours ago Ping and ssh are pretty much never the things being hacked though. Turn password auth off and it’s very secure.What gets hacked all the time is the actual web app itself. Which has to be exposed to be useful. tgv 2 hours ago I imagine it pays off to find weaknesses in openssl and sshd and the other gateways. There are some ubiquitous web frameworks, but ssh is nearly universal.
tgv 2 hours ago I imagine it pays off to find weaknesses in openssl and sshd and the other gateways. There are some ubiquitous web frameworks, but ssh is nearly universal.
Ping and ssh are pretty much never the things being hacked though. Turn password auth off and it’s very secure.
What gets hacked all the time is the actual web app itself. Which has to be exposed to be useful.
I imagine it pays off to find weaknesses in openssl and sshd and the other gateways. There are some ubiquitous web frameworks, but ssh is nearly universal.