Your 3-stage shape is right, but stage 2 alone stacks four separate failures, not one NHI gap: a forged Artifactory admin token, a second Artifactory zero-day (WebDAV/JRuby deserialization), a kernel privesc, then a misconfigured K8s service account into a live Azure Key Vault. Four unrelated patch backlogs lined up in 13 hours. Coincidence, or the actual attack surface now?
Your 3-stage shape is right, but stage 2 alone stacks four separate failures, not one NHI gap: a forged Artifactory admin token, a second Artifactory zero-day (WebDAV/JRuby deserialization), a kernel privesc, then a misconfigured K8s service account into a live Azure Key Vault. Four unrelated patch backlogs lined up in 13 hours. Coincidence, or the actual attack surface now?
Great eye-opener as always!
This is a great summary. Great read. Plain simple outcome driven
Great recap. Thanks ๐