Hey you VEP people: if the NSA discloses an 0day to a vendor, and the vendor ignores it (doesn't fix), what should the NSA do?
-
-
Replying to @ErrataRob
...should the NSA just keep on happily exploiting it, or should the NSA have a policy of making it public after a few months?
13 replies 6 retweets 6 likes -
Replying to @ErrataRob @thegrugq
The NSA should just shutdown/brick everything affected and let the vendor deal with the consequences. ;-)
1 reply 1 retweet 2 likes
Because hey, they're the NSA and can get away with it. The rest of us would go to jail for performing that service.
6:26 PM - 22 Apr 2017
0 replies
1 retweet
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.