Really glad to see the rate of security fixes speeding up.
po1nt 14 minutes ago||
I think this is much healthier approach to AI reports than curl has. But I understand both sides.
FloatArtifact 1 hour ago|
"
* We have seen a number of cases where a security bug identified
* by AI tools is subsequently independently discovered by a
* different researcher. This suggests that adversaries who do not
* report bugs to OSS projects are likely to be able to discover
* these bugs too. Given this, the OpenSSH team will, for now, be
* making more frequent releases to get bugfixes into users' hands
* more quickly rather than batching them until the next planned
* release."