91
you are viewing a single comment's thread
view the rest of the comments
[-] smeg@feddit.uk 81 points 2 days ago

There were also SSH key files.

I’m not publishing the archive, keys, or session logs.

I submitted the report and findings using Meta’s bug bounty program. Meta marked the report “Not Applicable.”

Guess they don't care if you publish the SSH keys then?

[-] docktordreh@discuss.tchncs.de 20 points 2 days ago

They've probably rotated the keys since they were notified of the security breach.

But yes, companies that act this way undermine the resolve to disclose their security vulnerabilities.

[-] drmoose@lemmy.world 9 points 2 days ago

Ssh keys to what? If the key is used for user operations, not internal then there's no security breach here other than deobfuscation.

[-] smeg@feddit.uk 13 points 2 days ago

Guess they'll have to publish them to find out

this post was submitted on 24 Sep 2026
91 points (100.0% liked)

Programmer Humor

33344 readers
497 users here now

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

founded 3 years ago
MODERATORS