Writing · security
5 posts filed under security, newest first.
Ciphertext in git, plaintext at activation. The sops store protects the repository, so the leak this fleet actually had was a running system quoted into a log.
Blocking crawlers by User-Agent stops only the crawlers that identify themselves. The durable control is verified source ranges, pinned by hash.
If the credential that unwraps your backup lives inside it, a total host loss leaves an archive nobody can open. Escrow the identity, then test the restore.
An unauthenticated form endpoint is an abuse vector and a measurement failure at once: every probe looks like a genuine submission in your own metrics.
A validator tests one message it received. A check on your own receiving host tests your real signing path and records the selector your mail system stamped.