关于「timcraig」的内容列表

Vulnerability bounty platform Open Bounty has been criticized by security researchers after posting user-submitted vulnerability reports on a public blockchain

Open Bounty, a bug bounty platform, has come under intense criticism from other security researchers after it was discovered that user-submitted bug reports were posted on the public blockchain, according to TimCraig. Pascal Caversaccio, an independent security researcher who first discovered the issue, said it was extremely irresponsible to publicly disclose a potential vulnerability, and any hacker could sift through reports and exploit them.

clock
2024-07-03 15:20:35
漏洞赏金平台Open Bounty将用户提交的漏洞报告发布在公共区块链上后,遭安全研究人员批评

DL News引援TimCraig发布的消息,漏洞赏金平台Open Bounty在被发现用户提交的漏洞报告发布在公共区块链上后,遭到了其他安全研究人员的猛烈批评。 首先发现该问题的独立安全研究员Pascal Caversaccio表示,公开泄露潜在漏洞是极其不负责任的行为,任何黑客都可以筛选报告并加以利用。

clock
2024-07-03 15:20:35