Oh this is so true. If I was a hacker, I'd never bother attacking PROD instances, you can get most of what you might want from DEV/TEST/STAGE and they have far fewer protections. The ability to execute a prod transaction or prod data isn't always the valuable thing anyhow. https://x.com/MerrittBaer/status/1541827243810627584
Free compute! A stale copy of PROD! The build server and artifact that will deploy to PROD (eventually), and signing keys (who uses those anyhow) All the codez, API keys for 3rd party things.
♡ 1 ↻ 0Ah, you say, Matt, dammit, you're right! We'll make the dev resources so damn secure no developer will have access to DEV, TEST, STAGE or PROD! Genius! Now all the development is on personal machines and contractor machines on less secure networks. Success!!!
♡ 1 ↻ 0