Boosted by dysfun@treehouse.systems ("gaytabase"):
haroonmeer@infosec.exchange ("Haroon Meer") wrote:
I’ve mentioned this before: this is one of the oncoming trains for corp-security. We’ve long failed at least-privilege, but weren’t often punished for it.
Helen in HR (or Bob in accounts) didn’t know what to do with the extra perms they didn’t know they had.
Their agents will.
