Comment on Google fixes two Pixel zero-day flaws exploited by forensics firms. GrapheneOS discovered and reported these flaws.

<- View Parent
booly@sh.itjust.works ⁨5⁩ ⁨months⁩ ago

disclosed active exploitation

So, not a fucking zero day.

I’m confused. Isn’t an active exploit that hasn’t been patched yet, by definition, a zero day? So the release of a new patch that closes an actively exploited vulnerability patches a zero-day?

source
Sort:hotnewtop