Post #3852224
2026-07-13 20:47 UTC
@ben@kwiecien.us they're mostly rubbish. A large number are things that are outside the threat model, repeats. We do get the odd real issue, but those are usually low severity. Stats on the percentage of that peak last month are a bit delayed as triage takes a while, but we'll give all the stats eventually.
Replies (1)
-
@florenciocano@infosec.exchange 2026-07-15 21:26
@iamamoose@infosec.exchange Mark, you said "outside of the threat model". Is that threat model documented anywhere? I ask because I think the threat model could be used to filter security issues and I would like to see Apache's