Comment on After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug
balsoft@lemmy.ml 21 hours ago
Mistreating your bug bounty participants and then threatening legal action for 0days is a great way to get vulnerabilities in your software to be sold on the darknet.
Laser@feddit.org 20 hours ago
Funny thing is this person doesn’t sell the exploits. They just release them. Which is totally legal btw, Microsoft threatening legal action is just an attempt to intimidate. I’m not even sure selling the exploit constitutes anything illegal as long as you tax those sales proper, as long as you’re not the one using it to gain unauthorized access to a system