Drowning in AI-generated bug reports? GitHub has a radical answer: Stop accounts from reporting them. GitHub’s new limits on bug reports aren’t a solution to the AI bug-report flood. Anything but! They’re an admission that the traditional security-disclosure workflow, with human maintainers in the loop, simply doesn’t scale. The scarce resource is no longer discovering security holes; it’s informed human judgment. Specifically, GitHub has introduced daily rate limits on new private vulnerability reports. The goal is to give open-source maintainers breathing space to reduce the burden of low-quality and automated security submissions without closing off private disclosure channels to legitimate researchers. As GitHub said, and we all know, open-source maintainers are receiving an increasing number of reports that “bury the reports that matter.” These new restrictions respond to the flood of bulk and automated filings. As Dan Lorenc, co-founder and CEO ...
DevOps.com is now providing a weekly DevOps jobs report through which opportunities for DevOps professionals will be highlighted as part of an effort to better serve our audience. Our goal in these challenging economic times is to make it just that much easier for DevOps professionals to advance their careers. Of course, the pool of available DevOps talent is still relatively constrained, so when one DevOps professional takes on a new role, it tends to create opportunities for others. The ten job postings shared this week are selected based on the company looking to hire, the vertical industry segment and naturally, the pay scale being offered. We’re also committed to providing additional insights into the state of the DevOps job market. In the meantime, for your consideration. Greenhouse Datadog New York, NY Senior Software Engineer – CI/CD Security $192,000 to $240,000 GitLab Remote, US Distinguished Engineer, Core DevOps $250,000 to $349,000 Motional Boston...