安全公司利用AI黑客工具Strix在25分钟内获得了推理平台Baseten生产环境GitHub的管理员访问权限。1该漏洞源于2023年3月3日构建的Docker镜像中遗留的GitHub token,该凭证被记录在镜像的构建历史元数据中,有效期超过3年。1这枚token拥有对Baseten主产品代码库basetenlabs/baseten、GitOps部署库basetenlabs/flux-cd、CLI分发渠道basetenlabs/homebrew-tap以及包含客户目录的私有仓库basetenlabs/fde的管理权限和推送权限。1
漏洞在2026年7月13日晚11:10被发现,Baseten安全团队在次日下午4:34确认为关键问题并完成token轮换。1Baseten安全团队评价其处理方式"专业且迅速"。1
A security firm used its AI-powered hacking tool Strix to obtain administrator access to inference platform Baseten's production GitHub repositories in approximately 25 minutes.1 The vulnerability stemmed from a GitHub token that had been embedded in a Docker image built in March 2023 and remained discoverable in the image's build history metadata.1 The exposed token retained full administrative and push permissions across multiple critical repositories, including basetenlabs/baseten (the main product codebase), basetenlabs/flux-cd (GitOps production infrastructure), basetenlabs/homebrew-tap (CLI distribution channel), and a private repository containing customer directories.1
The token had remained valid for over three years, from its creation on March 3, 2023, until discovery on July 13, 2026 at 11:10 PM.1 Baseten's security team confirmed the issue as critical and completed token rotation by July 14 at 4:34 PM.1 According to the security researchers, Baseten's response team proved to be "professional and very quick to deal with it."1
评论
还没有评论,欢迎留下第一条。