As much as I love open source, Gab should have never been open source. It seems very unwise to make a highly targeted free speech social media platform available for easy backend code analysis. No wonder they were hacked. https://git.rip/gab/gab-social
Software with crosshairs on its back practicing garbage security practices will be pwnd the same regardless of it’s open-ness.
Honestly. With a lot of the tools out there these days. I question if it’s even faster to hunt security bugs by reading the source rather than just attempting common exploits via tooling.