Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Does anyone else feel that this article is both poorly written and furthermore just bad reporting? I was curious about the original source, which I tracked down to a blog post by George Kurtz and several links on it [1].

It seems to only claim that source control services are a good target and are frequently configured with no security (which is A Bad Thing), but does not blame Perforce as an attack vector. The article implies, however, that Perforce was used as an attack vector which does not appear to be the case. Of course, it is very hard to discern what the article actually says when they spend one sentence per idea, with no further explanation or investigation.

[1]: http://siblog.mcafee.com/cto/source-code-repositories-target...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: