Isolate your Continuous Integration Server!
Posted in Electronic Security, Software Engineering, System Architecture on October 20th, 2006 by leodirac – Comments OffHere’s a little food for thought about hacking into a development system. If you wanted to gain control of somebody’s network how would you do it? Well, you’d probably try to figure out a way to get one of the computers on the inside of their firewall to run some code for you. If you could get it to run an arbitrary block of code that you wrote, then you’re probably pretty close to 0wning it. Now think about the continuous integration server in your development farm. What does it do? Whenever anybody checks in new code, it runs all…
...full article
Leo is a professional geek who looks forward to the robots taking over. For more current, less coherent thoughts, follow him on twitter