top | item 23361728

Notice of Data Security Incident

28 points| nickpresta | 5 years ago |minted.com

5 comments

order

butner|5 years ago

Timing aligns with Salt vulnerabilities (CVE-2020-11651 and CVE-2020-11652)?

https://blog.f-secure.com/new-vulnerabilities-make-exposed-s...

thephyber|5 years ago

Those were pretty well publicized CVEs when they were patched.

On the assumption that this data breach was caused by those CVEs (which I think were even publicized by the US CISO / NSA, how does the average website-hosting company find out about CVEs that apply to their stack in a timely manner? (note: I'm playing as devil's advocate, but would seriously like to hear realistic answers)