Behind the Firewall ft. Aslan Konsavage

by Morgan Prost / June 3rd, 2026

Security isn’t just about what’s behind the firewall, it’s also about what’s being shared outside of it.

Sometimes, the biggest risks aren’t in the code, they’re in the conversations around it.

While researching during an engagement, Aslan Konsavage came across a public developer forum where one of his client’s developers was sharing screenshots of their internal portal and source code. The discovery wasn’t part of the original scope, but it was a clear exposure risk.

Aslan reached out to the client the next morning to report what he found. How the issue is rated will depend on the client’s internal policies, but it’s a strong reminder that security isn’t just about what’s behind the firewall, it’s also about what’s being shared outside of it.

Vigilance doesn’t stop at the perimeter. What your team shares online can be just as critical as what’s stored internally.

 Have you ever found sensitive info shared in unexpected places? How do you handle it when it’s outside the scope?