Correct. The point of that tweet was saying that even when there's a bug bounty, AND even when an organization has a vuln reporting front door (meaning their regular security@apple.com email address), vulns might come in via social media, & to prepare to route them correctly.https://twitter.com/i0n1c/status/935608248027303936 …
-
-
I get that on GitHub for .net. It’s frustrating because I really want to pay out but for GitHub issues I can’t.
-
Ordinary folks don’t see a bug that crashes their app as a DoS in the underlying hosting layer. Then even if they report it sometimes it gets lost in triage because they didn’t use the right language or provide a repo.
- 4 more replies
New conversation -
-
-
As it is said, it is a feature not a bug ;)
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Do you know how is the account re-enabled when you try to log in as root? Standard, non-admin users can re-enable it.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Also shows Apple doesn’t pay attention to their own developer forums.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.