Comment on Disclosure of sensitive credentials and configuration in containerized deployments - ownCloud

<- View Parent
TCB13@lemmy.world ⁨1⁩ ⁨year⁩ ago

This is just a bad practice that was popularized by CI/CD solutions and later on by containers. I’m not saying containers aren’t good for security, what I’m saying is that they’re misused and abused and that images shouldn’t even be a thing. Isolation is great, blindingly trusting images made by someone and/or having people that don’t have any basic knowledge of security nor infrastructure suddenly being able to deploy complex solutions with a click ends up in situations like this.

source
Sort:hotnewtop