What is Nostr?
Kevin Beaumont /
npub176r…kwlw
2025-01-14 15:26:36

Kevin Beaumont on Nostr: Just to point it out - vulnerability researchers in China are often S grade, top ...

Just to point it out - vulnerability researchers in China are often S grade, top guys.

They may have legal requirements to inform the Chinese government of vulns before they inform vendors.

Some American edge network vendors are then taking 6 months or more to issue patches, and in some cases aren’t telling customers for over a year that the vuln even exists, nor issuing CVEs, nor giving disclosure timelines.

Ripping out Chinese networking equipment to install American equipment w/o fixing:

Author Public Key
npub176rs4lx7gjqwepgg75psfpv7zjj3xz0lyj4n7rux93ftm390sars6fkwlw