|
|
|
|
|
by MrDresden
2020 days ago
|
|
I see you completely missed my point. My point is that in the case of M$ the defects could be publicly announced to all parties at once as a way of making M$ realize that how bad their handling is/was. In all likelyhood this shouldn't have to happen for too long before they would realize their mistake. Many other corporations do indeed value the discoveries of researchers and do pay accordingly for being notified. Never did I suggest that this should become the industry norm (i.e not paying for private disclosures). Now what ever your personal feelings on that idea is, it does not change the fact that selling exploits to other parties would be unethical. Furthermore, participating in a system that promotes assumptions and flawed reading comprehension is not conductive to a good discourse. That means you. |
|