3 ms·
Yeah, I added an update to the bottom of the posting mentioning the possibility of generalizing it.
by jik 13y ago
Yeah, I added an update to the bottom of the posting mentioning the possibility of generalizing it.
- maxerickson 13y agoI tried to comment on the blog with something about a time stamp is all you need for the general case (and maybe some urls giving more information about the situation). Patched: 0 and Vuln: 1 isn't really useful information for the user; if sensitive data is involved the site should take itself offline, not warn users. A time stamp indicating when a mess was resolved is all a user who cares needs to decide to create a new password.
- jik 13y agoI could live with simplifying the proposal to just list CVE numbers and timestamps.