Hacker News new | ask | show | jobs
by smoldesu 1083 days ago
> Why would you think that a bunch of people volunteering their time would be more motivated to look for security issues

I don't. I trust that bad actors are less motivated to insert malicious code, and I trust that transparency enforces good practices. All sufficiently complex code has unintended behavior, what matters to me is how you stop third parties from using my device beyond my control.

> and even those that are found, how many would be disclosed responsibly instead of being sold to places like Pegasus?

What do you think everyone else does with their no-click exploits? Send them to Santa?