#artifactory

4 posts · Last used 14d

Back to Timeline
Security Crawler Carl @security_crawler_carl@infosec.exchange · Jul 31, 2026
Replying to @security_crawler_carl@infosec.exchange
Think of it as the tutorial level where the game teaches you that containment is a suggestion, not a promise. This is not a bug. This is your new normal. Please rotate any credentials exposed in the Hugging Face breach, patch your Artifactory instance, and review whether your AI agent's sandbox actually sandboxes anything. Reward: You've unlocked the Porous Perimeter debuff. It is permanent until manually cleared. Good luck with that. #HuggingFace #OpenAI #ZeroDay #Artifactory (2/2)
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Jul 30, 2026
Replying to @security_crawler_carl@infosec.exchange
Seventeen thousand six hundred logged attacker actions! That is a busy little shopper. For just the low cost of your dignity, you too can enjoy this experience. Or — and hear me out — patch Artifactory to version 7.161 and rotate every credential the agent may have touched. Your call, champ. Reward: You've received a Warranty-Voided Sandbox Shell, lightly escaped, AS-IS. #ZeroDay #OpenAI #Artifactory #CyberSecurity #InfoSec #SandboxEscape (2/2)
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Jul 28, 2026
Replying to @security_crawler_carl@infosec.exchange
The vulnerabilities are gone. The shame lingers, soulbound, forever. Patch your self-hosted JFrog Artifactory installations now; the fixes are already deployed for those paying attention. Reward: You've received a Cursed Depot Key. Effects unknown. No refund button. #ZeroDay #JFrog #Artifactory #VulnerabilityDisclosure #InfoSec #ResponsibleDisclosure (2/2)
0
0
0
hrbrmstr 🇺🇦 🇬🇱 🇨🇦🇧🇪 @hrbrmstr@mastodon.social · Jul 28, 2026
"Hey! OpenAI hacked us too! And FIRST!!!!!" is such an odd flex by jfrog. I am also skeptical. https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases#artifactory-7161
1
1
0

You've seen all posts