Hacker News new | ask | show | jobs
by cperciva 2794 days ago
They didn't discover it themselves. If they had, how would they have known who was part of the embargo and when it was scheduled to end?

Someone leaked it to them.

2 comments

“discovered by themselves” was intended to read “discovered outside of the embargo”.

Since you didn’t answer my question, let me try again. How can someone break an embargo they’re not a part of?

To me the mess back then was a very convenient distraction from the real issue, for Intel and their embargo.

OpenBSD didn't break the embargo. Whoever leaked it to them broke the embargo (and is very very lucky that nobody is saying who it was).
People make inferences all the time. In order to discover security vulnerabilities in the first place, you have to make inferences about how permissions or memory accesses are mishandled.