I've had to respond to multiple OSS security issues recently and the wild thing is that agents can now generate exploits just on the *rumour* of a bug. This throws security embargoes out the window, as the fix is less important than the knowledge of its existence. What on earth are open source maintainers supposed to do next? https://anil.recoil.org/notes/rumour-is-the-exploit
0
Replies
1
Boost
No replies yet
Be the first to share your thoughts.