Comment on 700+ self-hosted Git instances battered in 0-day attacks

<- View Parent
Lightfire228@pawb.social ⁨4⁩ ⁨days⁩ ago

But it doesn’t have any built-in concept of users, write permissions, or authentication (except for commit signing)

Hosting an unauthenticated git repo would be the equivalent to an open ssh port with no password

Not to mention collaborative things like issue tracking, PRs, forums, etc

source
Sort:hotnewtop