Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
patmorgan23
2y ago
0 comments
Save
Share
There are "security researchers" who grep GitHub for the words 'password' or 'secret' and blindly file CVE's if they find any hits.
0 comments
2 comments · 1 top-level
top
newest
oldest
stonogo
2y ago
· 1 in thread
and those CVEs are rejected or revoked. There are bad actors everywhere; they're not a good excuse to stop trying.
worthless-trash
2y ago
There are -many- software vendors and developers that wont accept or even respond to security researchers. You are absolutely correct.
j
/
k
navigate · click thread line to collapse