Hacker News new | ask | show | jobs
by bob_doggo 2567 days ago
I can't exactly say that I trust NSA, and I don't doubt that they have knowledge of vulnerabilities that they aren't releasing.

But I still don't see how that could be a reason to not take this warning seriously.

I think that the cynical view of this would rather be that they consider the potential harm from someone they don't like, making a 1m machines botnet from this, to be greater that the benefit they get from themselves making a 1m machines botnet.

1 comments

Maybe you're right and I'm too cynical, but I see this more like a PR piece to attract talent to their organization.

I think the NSA has a real image problem. They released ghidra. They admitted it was a recruitment tool. They now release this warning which basically tells us to update our software. Anyways, if they really want to improve their image, they need to release zero day exploits and prove it's not just an offensive but also a defensive agency.

The release of an exploitable bug might deny them a couple of targets but will protect millions.