Hacker News new | ask | show | jobs
by jacquesm 1476 days ago
Not monitoring the components in your setup for security announcements is a fairly basic error. Someone should be watching these. Otherwise every Christmas would be a hackfest.
2 comments

> Otherwise every Christmas would be a hackfest.

It probably is.

I raised the alarm for log4shell internally on December 9th, and then then it was being actively exploited. I know people at other companies who hadn't heard about it, or didn't think it was worth doing anything about, as recently as April.

That’s where diversity hiring shines.