Security Intermediate About 25 min +210 XP

Deploy Key Exposed to Local Users

A security scan flagged the deploy account's private SSH key as readable beyond its owner on the shared deploy host.

Stage 1 of 4 in Breach Response.

Briefing

The nightly permissions scan flagged /home/deploy/.ssh on the shared deploy host after yesterday's home directory sync, and security has opened a containment ticket.

The deploy account still needs this key for the 10:00 release, so deleting it or disabling the account is off the table.

Rotation will happen separately, out of band, once local access is contained.

The fix is yours to find: hints, the recovery checks and the debrief unlock inside the incident.

How it plays

  1. 01

    Get paged

    The alert fires and the clock starts. Read the page and the briefing.

  2. 02

    Investigate

    Work in a simulated shell with realistic output: logs, configs, services.

  3. 03

    Fix it

    Change the system the way you would in production. Hints are there if you get stuck.

  4. 04

    Prove it

    Automated checks verify the recovery, then the debrief explains what happened.

Your pager is ready.

Free, instant, and it works on your phone. No signup: start as a guest and save your progress later.