3 ms·
For credential stealing, that is true, but at least it would protect your local machine. But I just read these worms also try container escape ...
by mentalgear 5mo ago
For credential stealing, that is true, but at least it would protect your local machine. But I just read these worms also try container escape ...
- silon42 5mo agoWe need to prevent direct connections to internet for containers... once you have a proxy, predefined credentials (api keys) can maybe be added there (per container/target).
- cyanydeez 5mo agothe model most people are talking about is in the cloud. for the harness to do useful work, it needs to talk to the cloud the trouble is, we need protocols that are software determined that force AI interaxtions into limited scope but currently theyre all just bash adjacent and inherit your tools.
- fnoef 5mo agoYou need to use full isolated VM with its own kernel. But then again, I've read somewhere that this malware is also trying to escape the VM isolation as well...
- deleted 5mo ago[deleted]