ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
Aikido researchers found a dozen live GitLab incoming email addresses in public READMEs and support pages. Each embeds a persistent glimt- token that lets anyone create issues or merge requests as the owner, bypassing IP restrictions. Attackers could push code to protected branches or steal secrets. GitLab closed the May report as intended behavior, then updated its UI in June.
Tap to vote and see what everyone thinks.
Summary by ByteBrief