• Eager Eagle@lemmy.world
    link
    fedilink
    English
    arrow-up
    5
    ·
    11 hours ago

    that assumes

    1. the user does have access to a production db;
    2. the agent has access to a terminal from which they can reach the production machine (not in a container, different network, or similar);
    3. access does not require interaction (like entering password);
    4. the agent deliberately decides to access a production database to solve a development problem, and that was not the user requesting it;
    5. the agent manages to find the database credentials in production;
    6. the agent is left unattended.

    Possible? Sure. It’s also possible that I drink half a bottle of vodka on a Friday night and mess up with production.