←back to thread

560 points bearsyankees | 1 comments | | HN request time: 0.202s | source
Show context
swyx ◴[] No.43965120[source]
> Since then, I have reached out multiple times (on March 5 and March 13) seeking updates on remediation and user notification plans. Unfortunately, as of today’s publication date (April 21, 2025), I have been met with radio silence. To my knowledge, Cerca has not publicly acknowledged this incident or informed users about this vulnerability, despite their earlier assurances to me. They also never followed up with me following our call and ignored all my follow up emails.

there can always be another side to this story but also wtf. this kind of shit makes me want to charles-proxy every new app i run because who knows what security any random startup has

replies(2): >>43965162 #>>43965832 #
1. ◴[] No.43965162[source]