logoalt Hacker News

akerl_yesterday at 6:42 PM2 repliesview on HN

Who knows how many attackers had found this vulnerability and had already been using it prior to this research finding it?


Replies

BeetleByesterday at 7:43 PM

Argument from uncertainty is not a good way to reason about this.

I could equally ask: "Who knows how many attackers learned about this vulnerability from this disclosure, and used it before the distributions fixed it?"

show 1 reply
Quarrelsomeyesterday at 6:47 PM

well now everyone does, so the irresponsible disclosure makes it significantly worse.

show 1 reply