Search
Items tagged with: curl
cURL has axed its bug bounty program.
itsfoss.com/news/curl-closes-b…
#opensource #curl #programming
cURL Gets Rid of Its Bug Bounty Program Over AI Slop Overrun
Daniel Stenberg says the inflow of AI slop has become unsustainable for the curl security team to handle.Sourav Rudra (It's FOSS)
Some of the emails I get are truly sad reflections of the complicated and rather sorry state of things we are in. Like this.
(also, apparently #curl is used in another popular game)
"Rainbow 6 Siege Activation issue"
"Buffer Overflow Vulnerability in WebSocket Handling".
A bot? An AI? Just a silly reporter? Another fine waste of #curl maintainer time.
curl disclosed on HackerOne: Buffer Overflow Vulnerability in...
## Summary: Hello security team, Hope you are doing well :) I would like to report a potential security vulnerability in the WebSocket handling code of the curl library. The issue is related to...HackerOne
We disclosed this #hackerone report against #curl when someone asked Bard to find a vulnerability, and it hallucinated together something:
curl disclosed on HackerOne: [Critical] Curl CVE-2023-38545...
## Summary: Curl CVE-2023-38545 vulnerability code changes are disclosed on the internet ## Steps To Reproduce: To replicate the issue, I have searched in the Bard about this vulnerability. It...HackerOne