logoalt Hacker News

Dititoday at 7:44 AM1 replyview on HN

Not disclosing a vulnerability you found to the manufacturer (while the product can still hopefully be patched) is “not responsible”. I think that’s what the person is trying to say.


Replies

Retr0idtoday at 8:43 AM

It seems that some people do not appreciate the amount of labour that can be required to turn knowledge of a vulnerability into an actionable bug report. (Before someone says "ask an LLM to do it", LG has that option available to them, too)

It is certainly not work that I would do to benefit a many-billion dollar company, for ~free. I may do it to benefit device owners such as myself, instead.

LG is solely responsible for the security of the products that they choose to sell.

show 1 reply