The Radius logs show a query that should never have run. Buried in the output is sensitive data—credentials, tokens, PII—now exposed.
Radius sensitive data is not theoretical. It lives in authentication requests, accounting messages, and access-accept packets. These values can include usernames, passwords, session identifiers, and device information.