Comment on Staying ahead of the AMD vulnerability known as “Zenbleed”parentComments−kd9133yI figured the default assumption was these vendors kept updated with security patches.Do we really need a blog post every-time they run apt/yum update?−sigmar3yWhen every tech news site puts the vulnerability in headlines, it's going to have a lot of visibility and many of Cloudflare's customers are going to ask them about it (regardless of whether the attention is warranted or not).−mschuster913yThat still doesn't stop people from asking about log4j way over a year after the entire fiasco went down...−tick_tock_tick3yI figured the default assumption was these vendors kept updated with security patches.That's a damn big assume when you have compliance to worry about.
Comments
I figured the default assumption was these vendors kept updated with security patches.
Do we really need a blog post every-time they run apt/yum update?
When every tech news site puts the vulnerability in headlines, it's going to have a lot of visibility and many of Cloudflare's customers are going to ask them about it (regardless of whether the attention is warranted or not).
That still doesn't stop people from asking about log4j way over a year after the entire fiasco went down...
That's a damn big assume when you have compliance to worry about.