logoalt Hacker News

tptacekyesterday at 9:00 PM2 repliesview on HN

No, you're in more pain, but other defenders with different postures benefit from having faster and fuller disclosure.


Replies

throw0101ayesterday at 11:50 PM

> No, you're in more pain, but other defenders with different postures benefit from having faster and fuller disclosure.

Good for them. But just because some folks cannot afford 24/7 response teams and on-call personnel that doesn't make them or their systems any less important.

Lots of non-profits and academic institutions had to scramble because of the Linux kernel team's position of non-communication to distros.

show 1 reply
ori_byesterday at 10:40 PM

Mind explaining how sitting on it a month after the patch landed is 'faster'? To my mind, that's a month where attackers could analyze commit logs, but maintainers are not acting with urgency to ship fixes.

show 1 reply