Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Exposing a .git folder is a common error that people other than threat actors make, making a public post about it at least can help ordinary developers in addition to TAs making this mistake. If you find this disclosure frustrating, take a look at what threat intel/AV/EDR/etc companies post on their blogs.


yeah look at like Krebs, he actually tries to track down the criminals and not make their job easy by posting their mistakes halfway during the operation...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: