Hacker News new | past | comments | ask | show | jobs | submit login

Personal opinion: the second. If the container is popped so you can read environment variables, you can read files too.



Not always. Stuff like exposed debug toolbars or over-exposing stacktraces can leak environment variables, but (usually not) files.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: