|
|
|
|
|
by angst
284 days ago
|
|
> There is an increasing crowd of people who ask a large language model to "find a problem in curl, make it sound terrible", then send the result, which is never correct, to the project, thinking that they are somehow helping. Our worst nightmares are becoming true indeed.. |
|
>Our worst nightmares are becoming true indeed
Agree completely with you, but most of the time this isn't people being altruistic.
It's people spraying bullshit at maintainers to try and score "CVE IDs as trophies" for their résumé or payouts from the vendor-backed Internet Bug Bounty (IBB) program on HackerOne.
https://hackerone.com/ibb
https://daniel.haxx.se/blog/2021/09/23/curl-joins-the-reborn...