you are viewing a single comment's thread
view the rest of the comments
[–] 25 points 1 year ago (1 child)

The flaw also highlighted a social engineering exploit. It’s not the first time some vulnerability has entered open source software due to social pressure on the maintainer. Notably EventStream exploit.

This is difficult to account for. You can’t build automated tooling for social engineering exploits.

  • source
  • parent
  • hideshow 1 child comment