• Turret3857@infosec.pub
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    1
    ·
    17 hours ago

    Are you being /s? Genuinely, do you really feel just because vulnerabilities aren’t publicly exposed they can’t be exploited?

    • bus_factor@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      16 hours ago

      I made a guess at their official reasoning for the policy. I made no comment about my own feelings or beliefs beyond that. And no, I don’t think that would stop anyone.

      Do you have a better guess at why they’re doing this? Because I can’t think of another reason why they’d be sharing the patches but prohibiting disclosure of them.

      • sneaky@r.nf
        link
        fedilink
        English
        arrow-up
        2
        ·
        15 hours ago

        Isn’t that common to not release how a vulnerability can be exploited publicly until you have it patched? Like yeah it won’t stop bad actors familiar with the space, but it would prevent normies like me jumping on the train.