GitHub Just Paid a Hacker $100,000. Itโs the Best Deal They Ever Made.
When GitHub handed a security researcher a $100,000 bounty for a critical remote code execution flaw, the headlines focused on the massive payout. But the real story isn’t the moneyโit’s the terrifying fragility of the open-source supply chain. One undiscovered bug could have cascaded across millions of repositories, making that six-figure check the cheapest insurance policy in tech history.