The Backend Engineering Show with Hussein Nasser cover image

GitHub SSH key is Leaked - How bad is this?

The Backend Engineering Show with Hussein Nasser

00:00

How to Hack Clients to Connect to You to Your IP Address

One trick is to do a DNS poisoning while while it's not trivial it can be done well if someone took the laptop right the development they went to Starbucks. The second problem is like you have to somehow trick clients to connect to you to your IP address because you're not going to have github.com it's impossible. Now that password will be encrypted with the symmetric key that has been negotiated between you and the attacker server so this is really bad as far as i that's how i analyzed it right i think this is pretty bad but if you call this message which says hey romoto side certificate has changed now let's explain what happened here"

Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner