NP-200 system security design review
NimbusPump NP-200 Program · candidate AREV-0004 vs effective baseline DRB-0007
PRJ-2026-0042-DRV-0001Threat review
Threat workbench
Shared service account between gateway services enables lateral movement
PRJ-2026-0042-TV-000141Proposed
- Proposed (current)
- Confirmed (pending)
- Assessed (pending)
- Treatment planned (pending)
- Mitigation pending (pending)
- Verified (pending)
- Closed (pending)
Proposed: gateway containers may share a single service account, so compromise of the telemetry forwarder would grant command-listener privileges.
Enrichment proposalConfidence medium
Actor: Attacker with one gateway container compromised.
- Shared credential across gateway services.
- Compromise lowest-privilege gateway service.
- Reuse shared account.
- Reach command listener with elevated effect.
No assessment yet: the threat is awaiting triage (proposed).
- Responsible implementer
- Unassigned
- Accountable manager
- Unassigned
- Independent security reviewer
- Unassigned
- Risk owner
- Unassigned
- Target date
- Not set
- Disposition
- Awaiting triage
- Treatment adopted (pending)
- Implemented (pending)
- Evidence accepted (pending)
- Retest passed (pending)
- Closed (pending)
No remediation options recorded for this threat yet.
EvidenceNot requestedRetestNot scheduled
- Proposed by enrichment (provenance retained)enrichment · Model enrich-m2 1.3; cannot suppress deterministic baseline.