@buherator curious: What do you mean with overnight? Keycloak is at least 10 years old now and I’ve encountered instances of it many times. Maybe it got more popular since its donation to the CNCF in 2023?
@buherator Ah I see. I‘d guess that for enterprises it counts a lot that Red Hat is the company behind Keycloak. (But it‘s only a guess)
@buherator funny that you mention keycloak on the very same day that we chose to disclose some vulnerabilities in it 🤷♂️ https://security.humanativaspa.it/an-analysis-of-the-keycloak-authentication-system/
@buherator I wasn’t involved in this specific research. But my gut feeling is that there’s more of it…