Skip to content
Discussion options

You must be logged in to vote

Whew! Okay, all done. Here's my reply, and a link to the new security document at the bottom:

First of all, thank you for your kind words, and for checking out xyOps! ❤️

Short answer: yes, installing xySat does expand the trust surface a bit, but it is not doing anything fundamentally different from giving xyOps another authorized way to execute work on that host. A good mental model is: installing xySat is similar to authorizing a persistent automation channel on the server, much like adding an SSH key for unattended access. If an attacker got hold of your xyOps admin account or another credential that lets them schedule privileged work, they could use that access to run commands on the …

Replies: 3 comments 8 replies

Comment options

You must be logged in to vote
6 replies
@W13N3N
Comment options

@jhuckaby
Comment options

Answer selected by W13N3N
@W13N3N
Comment options

@jhuckaby
Comment options

@W13N3N
Comment options

@jhuckaby
Comment options

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
2 replies
@W13N3N
Comment options

@jhuckaby
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants