A list of the slop if anyone is interested:
https://gist.github.com/bagder/07f7581f6e3d78ef37dfbfc81fd1d...
I looked at two reports, and I can’t tell if the reports are directly from an ai or some very junior student not really understanding security. LLms to me sound generally more convincing.
> To replicate the issue, I have searched in the Bard about this vulnerability.
Seeing Bard mentioned as an LLM takes me back :)
All of those reports are clearly AI and it's weird seeing the staff not recognizing it as AI and being serious.
Honestly infuriating to read. I'm so surprised cURL put up with this for so long
In the second report, Daniel greeted the slopper very kindly and tried to start a conversation with them. But the slopper calls him by the completely wrong name. And this was December 2023. It must have been extremely tiring.