Ravi Patel, Customer Admin

NP-200 system security design review

NimbusPump NP-200 Program · candidate AREV-0004 vs effective baseline DRB-0007

PRJ-2026-0042-DRV-0001Threat review
Threat workbench

Shared service account between gateway services enables lateral movement

PRJ-2026-0042-TV-000141Proposed

  1. Proposed (current)
  2. Confirmed (pending)
  3. Assessed (pending)
  4. Treatment planned (pending)
  5. Mitigation pending (pending)
  6. Verified (pending)
  7. Closed (pending)

Proposed: gateway containers may share a single service account, so compromise of the telemetry forwarder would grant command-listener privileges.

Enrichment proposalConfidence medium

Actor: Attacker with one gateway container compromised.

Elements
AE-000051NimbusLink Gateway edge service
Flows
DF-000077Remote dosing commandDF-000081Telemetry upload
Sources
SRC-0004drawio node gw-edge (service annotations)
Function
Gateway internal privilege separation