Friendica
daniel:// stenberg://
daniel:// stenberg://

daniel:// stenberg://

bagder@mastodon.social

daniel:// stenberg://

bagder@mastodon.social
I write curl. I don't know anything.
ActivityPub
2025-04-29 22:20:59 2025-04-29 13:45:04 2025-04-29 13:45:02 7621545

daniel:// stenberg://
daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

4 months ago • •

daniel:// stenberg://

4 months ago • •


This ordinary Tuesday? Two. Two AI slop security reports arrived to #curl. So far.
A STOP sign that says SLOP
#curl
  •  Languages
  •  Search Text
  •  Share via ...
Unknown parent

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

Unknown parent • 4 months ago • •
@GossiTheDog I stole it from mamot.fr/@sknob/11439877996968…

sknob (@sknob@mamot.fr)

Attached: 1 image This can’t possibly be an original idea, but I made it for possible use on my own sites and so I thought I’d share (as in feel free to use it if you like). #slop #StopSlop
Mamot - Le Mastodon de La Quadrature du Net
@Kevin Beaumont
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

Newk
mastodon - Link to source

Newk

in reply to daniel:// stenberg:// • 4 months ago • •

@GossiTheDog

And AI will steal it from all of the above.

@Kevin Beaumont
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

in reply to daniel:// stenberg:// • 4 months ago • •
and now, the user who submitted both of them is just gone from hackerone... Great, he'll show up again soon under a new alias.
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

in reply to daniel:// stenberg:// • 4 months ago • •
hackerone.com/reports/3117697

curl disclosed on HackerOne: Double Free Vulnerability in `libcurl`...

## Description: Two **Double Free** vulnerabilities have been identified in the `cookie.c` file of the `libcurl` library. These issues occur due to improper memory management, where the same memory...
HackerOne
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

Harry Sintonen
mastodon - Link to source

Harry Sintonen

in reply to daniel:// stenberg:// • 4 months ago • •

ufff.

Hackerone should just outright ban users who do this.

original: https://mamot.fr/@sknob/114398779969680176
This entry was edited (4 months ago)
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

mhoye
mastodon - Link to source

mhoye

in reply to daniel:// stenberg:// • 4 months ago • •
I would like to report a double-double free with any equal or greater purchase error in Cookie Monster dot c is for cookie that’s good enough for me c is for cookie that’s good enough for me c is for cookie that’s good enough for me oh cookie cookie cookie starts with C sharp dot network interface eth0
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

Sean M. Collins
mastodon - Link to source

Sean M. Collins

in reply to daniel:// stenberg:// • 4 months ago • •
being the target of someone else's AI slop "business" must be so infuriating.
  •  Languages
  •  Search Text
  •  Share via ...
Unknown parent

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

Unknown parent • 4 months ago • •
@mkoek my guess is that they bought the AI hype. Mostly nativity and incompetence, maybe mixed with a desire to actually do good but not the least a desire to get a bounty.
@Mark Koek
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

Lord Tom Klopf of CZ
mastodon - Link to source

Lord Tom Klopf of CZ

in reply to daniel:// stenberg:// • 4 months ago • •
what is the point of the people behind that report doing that? Malicious time-wasting ?
  •  Languages
  •  Search Text
  •  Share via ...
⇧