Hacker News new | ask | show | jobs
by pqh 3077 days ago
They really could have done a tiered release. Keep the knowledge of the vulnerability as close as possible for the ~6 months they had it, then release it to a greater (but still restricted) set of people for another ~6 months.

the worst case would have been someone in the latter set leaking the info, which is just what we have now. So it could have been potentially better. There was really no reason to drop a bomb like this.

1 comments

It didn't survive even the first 6 months and was published shortly before the embargo was over.
Nitpick: it actually survived 7 months. From June 1st to January ~1st