You are viewing a single comment's thread from:

RE: HiveSigner is INSECURE? - discussion and deep dive

in HiveDevs8 days ago

What would an "audit" or auditor do?

Keep an eye on the github repo?
Look for exploits in the live app?
"PenTest" the company itself?

Sort:  

Generally review the code for security issues and/or exploits. Ideally, regularly, but most are lucky if it is even done once halfassed.

Loading...