43
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 13 Jun 2026
43 points (100.0% liked)
cybersecurity
6217 readers
100 users here now
An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!
Community Rules
- Be kind
- Limit promotional activities
- Non-cybersecurity posts should be redirected to other communities within infosec.pub.
Enjoy!
founded 3 years ago
MODERATORS
$10k is nothing to AMD. The middle-management bean counters making these decisions are actively harming their company's (and user's security.
The flaw of not using HTTPS for the downloads is so basic it's shocking they didn't have internal tooling to raise this before it was shipped. I'm not familiar with AMD's bug bounty policy but they should have at least paid $1337 to the researcher for raising this to them.