@tg_infosec · Post #3198 · 12.05.2025 г., 09:31
👨💻 Attacking IaC. • Least Privilege; • Secrets Management; • Encryption of Sensitive Data; • Compliance as code; • terraform plan; • pet Infra; • Storing Terraform State Securely; • Malicious Terraform Providers or Modules; • Securing Terraform Executions with Isolation; • Protecting Sensitive Variables in Terraform Logs; • Securing API Keys and Archivist URLs in HCP Terraform; • Use dynamic credentials; • Terraform Plan vs Terraform Apply; • Replace blacklisted provider. #IaC#DevSecOps
Hashtags