Just the rumour of a bug is enough to find an exploit these days

Thinking through how the conventional OSS security embargoes no longer buy us time, and what open source maintainers might do instead to respond
365 points by avsm 1 days ago anil.recoil.org 117 comments

Summary

The article discusses the diminishing effectiveness of traditional security embargoes in open source software, suggesting that rumors of vulnerabilities can quickly lead to exploitation. It offers insights on how maintainers can adapt their strategies to address these evolving security challenges.

Comments (117 of )

Loading more comments... ⌛
Scroll down to load more comments
No comments available.
Type to search HN and engineering blog articles
Press Escape to close  |  to navigate  |  Enter to open