5 ms·
why would you do that rather than just revoking the key directly in the anthropic console?
by trees101 9mo ago
why would you do that rather than just revoking the key directly in the anthropic console?
- mingus88 9mo agoIt’s the key used by the attackers in the payload I think. So you publish it and a scanner will revoke it
- trees101 9mo agooh I see, you're force-revoking someone else's key
- freakynit 9mo agoDoes this mean a program can be written to generate all possible api keys and upload to github thereby revoke everyone's access?
- kylecazar 9mo agoThey are designed to be long enough that it's entirely impractical to do this. All possible is a massive number.
- freakynit 9mo agoThat's true tho... possible, but impractical.
- deleted 9mo ago[deleted]
- cortesoft 9mo agoOnly possible if you are unconstrained by time and storage.
- eru 9mo agoNot only you, but GitHub too, since you need to upload. Storage is actually not much of a problem (on your end): you can just generate them on the fly.
- antonvs 9mo agoNot possible given the amount of matter in the solar system and the amount of time before the Sun dies.