Hacker News new | ask | show | jobs
by fambalamboni 492 days ago
> Stopped because it didn’t have the “CI tested” flag: low pri.

Agree, certainly lower priority than the "caught by chance" case, but I wouldn't say "low priority". That system is the last line of defence and the fact that something is hitting it is definitely a large concern.

In the CrowdStrike's fiasco last year, their last line of defence, "Content Validator" failed.

"On July 19, 2024, two additional IPC Template Instances were deployed. Due to a bug in the Content Validator, one of the two Template Instances passed validation despite containing problematic content data."

https://www.crowdstrike.com/falcon-content-update-remediatio...

1 comments

Oh absolutely, if you have the budget then do them all. I just meant “lower pri” than the other.

My assumption is in most orgs you’ll find it hard to take time to investigate any of them, so you have to place your bets.