|
|
|
|
|
by Aurornis
214 days ago
|
|
This is a weird argument. Basically condoning security through obscurity: If nobody reports the bug then we just pretend it doesn’t exist, right? There are many groups searching for security vulnerabilities in popular open source software who deliberately do not disclose them. They do this to save them for their own use or even to sell them to bad actors. It’s starting to feel silly to demonize Google for doing security research at this point. |
|
Aren't most people here demonizing Google for dedicating the resources to find bugs, but not to fix them?