Drupal. Consulting. Gym. Vancouver. Some musical or other soundtrack in the background. Life is good.

He was not actually ignored, but he was pretty firmly dismissed ... by the Rails community. Not by github. There's a github post saying: "Two days ago he responsibly disclosed a security vulnerability to us and we worked with him to fix it in a timely fashion. Today, he found and exploited the public key form update vulnerability without responsible disclosure." https://github.com/blog/1069-responsible-disclosure-policy

After leaving in a sechole in their Rails app, GitHub acted professionally and responsibly.

Posted in Hacking Rails (and GitHub).

Mon, 05 Mar 2012 at 21:49:49 GMT


