Hacker News new | ask | show | jobs
by mlmlmasd 3416 days ago
MS is acting 'totally unethically' by not patching this bug immediately and rewarding the researcher.
1 comments

Meh. The bug requires you to connect Windows to a malicious SMB server.

Now that everybody knows that, if anybody is really concerned, they can stop SMB connections from LAN to WAN by blocking TCP 139, 445 and UDP 137, 138.

> Now that everybody knows that

Wait, when did everyone become aware of that? I'm willing to bet the vast majority of windows users have no idea. _Some_ people only know _because_ he released the bug.

I'm now aware, and I was able to block connections in my organizations firewall that protects a few thousand users. Not every single user needs to be aware for it to be effective.
Yes, but the point is you wouldn't be aware unless he released the info. He gave individual users an option to protect themselves in the absence of a patch from MS.