Y
Hacker News
new
|
ask
|
show
|
jobs
by
esafak
9 days ago
Security updates bypass the cooldown.
1 comments
doctorpangloss
9 days ago
But what channel decides it is a security update? How do you know? Someone has to notify whom exactly? And what if the adversary says their supply chain attack commit is a security update?
All of this cooldown stuff is so mind bogglingly stupid...
link
All of this cooldown stuff is so mind bogglingly stupid...