4 ms·
It's probably out of spite. At an OSS project I worked on previously they'd always hack into competing projects when they trashed the project's security. If yo
by Ergomane 14y ago
It's probably out of spite. At an OSS project I worked on previously they'd always hack into competing projects when they trashed the project's security.
If you live in a glass house, don't go around throwing stones.
- gojomo 14y agoIf throwing stones makes the targets do free vulnerability probing in return, why not? :)
- ubernostrum 14y agoOr if there's actually a history of web frameworks doing behind-the-scenes coordination and watching each other's backs... oh wait, that's not as good a gossip narrative. Never mind.
- jacobian 14y agoThat's 100% completely wrong. We've worked with Rails' security team in the past to coordinate releases fixing similar issues, and they've helped us out with discovering and analyzing issues of our own. They're a great group of people and I've got nothing but good things to say about our work together. Yet another reason why open source is fantastic: friendly competition can actually be friendly. It rocks.
- tenderlove 14y agoWe've hacked in to your hearts. ;-) Django folks I've worked with were extremely smart, helpful, and kind. Likewise I only have great things to say. <3<3<3<3<3<3
- kingkilr 14y agoThere's a known exploit vector for our hearts, but it's been closed as wontfix!
- bascule 14y agoPerhaps you could try briefly entertaining the thought that there's a modicum of good will between the two projects