Is soliciting money/rewards for 'responsible' security disclosures when none is stated a thing now?

Valdis Kl=?utf-8?Q?=c4=93?=tnieks valdis.kletnieks at vt.edu
Thu Mar 3 03:41:36 UTC 2022


On Wed, 02 Mar 2022 15:30:29 -0700, Brie said:
> I just got this in my e-mail...

> I am a web app security hunter. I spent some time on your website and found
> some vulnerabilities. I see on your website you take security very
> passionately.

I've gotten similar spam a number of times over the years (though people
offering to do SEO on my site are much more frequent).

The odd thing is - as far as I know, I don't *have* a website....
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 494 bytes
Desc: not available
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20220302/f1456c92/attachment.sig>


More information about the NANOG mailing list