Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This whole vector (serving malicious updates via MiTM) has been well known for the longest time, with even frameworks such as Evilgrade for exploiting them.

Such an oversight from a “security” company is frankly unforgivable.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: