| ▲ | teeray 2 hours ago | ||||||||||||||||
> Except there is lots to gain from being the first to write about the new malware on some registry Show me the company writing to their customers “we intentionally decided to ship code with potentially novel vulnerabilities. One of those vulnerabilities caused disclosure of your data, but cheer up! We have this cool security blog post about it now.” Meanwhile their competitors freeride and their customers’ data is safe. | |||||||||||||||||
| ▲ | scheme271 22 minutes ago | parent | next [-] | ||||||||||||||||
I think it's more some security company writing about a vulnerability they discovered in this module or a worm/backdoor and not the company that wrote the software. The security company gets publicity and potentially gets more biz for security consulting. | |||||||||||||||||
| ▲ | weaksauce an hour ago | parent | prev [-] | ||||||||||||||||
security researchers not the ones shipping the faulty code. | |||||||||||||||||
| |||||||||||||||||