Hacker News new | ask | show | jobs
by mistercow 4984 days ago
Yeah, the severity rating seems rather oblivious to simple social engineering. Leave a USB stick on a desk with a sticky note attached to it saying "Urgent, please review", and guess what is going to happen to that USB stick.

Being able to compromise a system via a mundane and apparently benign action is never low-severity.