Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Scott D DeWitt's employee details leaking on port-monitor tar gz #16

Open
cce-dsantos opened this issue Aug 27, 2021 · 0 comments
Open
Assignees

Comments

@cce-dsantos
Copy link

Just to let you guy know, an employ details have been leaked on nri-port-monitor.tar.gz
Once follow install instructions just before downloading it and listing its contents the following is shown:


root@522bda29148b:/opt# tar tvf nri-port-monitor.tar.gz 
drwxr-xr-x sdewitt/staff     0 2019-08-29 20:20 ./
drwxr-xr-x sdewitt/staff     0 2019-08-29 20:20 ./nri-port-monitor/
-rw-r--r-- sdewitt/staff   526 2019-08-29 20:20 ./nri-port-monitor/LICENSE
drwxr-xr-x sdewitt/staff     0 2019-08-29 20:20 ./nri-port-monitor/bin/
-rw-r--r-- sdewitt/staff  1754 2019-08-29 20:20 ./nri-port-monitor/README.md
-rw-r--r-- sdewitt/staff   355 2019-08-29 20:20 ./nri-port-monitor/port-monitor-definition.yml
-rw-r--r-- sdewitt/staff   221 2019-08-29 20:20 ./nri-port-monitor/port-monitor-config.yml.sample
-rwxr-xr-x sdewitt/staff 3955239 2019-08-29 20:20 ./nri-port-monitor/bin/port-monitor

it looks to be related to https://github.com/sdewitt-newrelic

Another funky behaviour is that when untar'ing the file will decompress the . folder changing current path ownership to Scott's, which has caused me some trouble

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants