Re: Security model update

2025-04-07 Thread Arnout Engelen
s a few may even learn something - we *have* also seen LLM-assisted reports that actually uncovered legitimate issues (though tbh I'd rather receive someone's broken English than their LLM's word salad...) Kind regards, Arnout > On Apr 7, 2025, at 9:59 AM, Arnout Engelen wr

Security model update

2025-04-07 Thread Arnout Engelen
e the security boundaries here. You could take inspiration from https://flink.apache.org/what-is-flink/security/ or other pages linked from https://security.apache.org/projects/ Kind regards, -- Arnout Engelen ASF Security Response Apache Pekko PMC member, ASF Member NixOS Committer Independent Open Source consultant

Re: Vulnerabilities found on pyspark

2024-11-18 Thread Arnout Engelen
ase check apache spark security advisory all crtical issue mentioned here. > > https://spark.apache.org/security.html > > > Regards, > Vaquar khan > > On Mon, Nov 18, 2024, 9:37 AM Arnout Engelen wrote: >> >> Hello Kamal et al, >> >> Thank you fo

Re: Vulnerabilities found on pyspark

2024-11-18 Thread Arnout Engelen
che.org list. I suspect it may have been rejected because of the attachment. Kind regards, Arnout Engelen On Mon, Nov 11, 2024 at 10:47 AM Kamal R (Consumer Bank, KMBL) via security wrote: > Hi Apache Team, > > > > If you could please respond to our query or point us to right po