

list of installed plugins.
Yeah, as you said, that’s a pretty serious security issue. That’s a data leak that explicitly lays out the shape of your attack surface. It tells the attacker exactly what additional software your server is running and if any of it includes known vulnerabilities, the attacker now knows how to gain access.



I think you’re both right. What’s really important is the lives at stake, and only the software can really meaningfully improve, but the incentives aren’t there right now to make those improvements happen.
One thing to consider though, is the incentives can always be tweaked. Maybe the robo taxi company barely blinks at a $100,000 fine, they chuckle about a $1 million fine, do they still laugh about a $50 million fine? They may really start to sweat over a $200 million fine. And hey, I can think of larger numbers, we can always provide them a better incentive (while financing the state).