The literal, official, in-the-training advice for GCP security is “make your bucket names inscrutable so they’re undiscoverable to attackers”
Okay, but then they’re also undiscoverable to maintainers?
Inscrutability is for passcodes, not resource names?
What am I missing here?
— Chelsea Troy 🏳️🌈 (@HeyChelseaTroy)
Apr 9, 2022
from http://twitter.com/HeyChelseaTroy
via IFTTT