Hacker News new | ask | show | jobs
by LXicon 5366 days ago
yes, notifying them is kind. simply not exploiting them is not.

it's like saying i'm being kind for not robbing someone.

1 comments

Is more like, I found your wallet here it is and all the money is still there. Perhaps honorable is the right word we are looking for here.
hardly. exploiting the vulnerability is clearly and objectively illegal. It is likely to affect not only the company itself but also any innocent customers one might defraud.