Post #3861872
2026-07-16 15:35 UTC
@Sempf@infosec.exchange @ajn142@infosec.exchange @ifin@infosec.exchange
My comment is that Mindgard did a less-than-stellar job in conveying the vulnerability in a way that somebody attempting to reproduce it can.
By leaving out the "You must wait 30 minutes for git.exe to launch", they perhaps caused some people (such as myself) to move on and think that it's not legit.
Replies (1)
-
@Sempf@infosec.exchange 2026-07-16 15:36
@wdormann@infosec.exchange @ajn142@infosec.exchange @ifin@infosec.exchange Well, you sure don't have to wait 30 minutes in VSCode. At least on my test box. (I know, "it works on my machine." I'm a developer, what can I say.)