Life is too short for a lot of things, one specifically, is filing for esoteric CVEs in products that aren't used that much. It's too long of a process to do for free. I wish more embedded systems brands would just pay out anything - but their software is probably too bad for them to afford that :/
Can you spot the simple vulnerability in this Python code? [Note: This exists on a somewhat well-known NAS] 😶🌫️
Selling 0-days in an alleyway will be the future of illegal alleyway transactions
Should I make a PR fixing an RCE in the latest version of Snapcast? Or leave that as an exercise to the reader of this post?