Of course the person who improperly disclosed the Apple vulnerability refers to themselves as "Agile Software Craftsman" >_____>
-
-
-
Replying to @hdevalence
They tweeted it rather than disclosing through the proper channels
1 reply 0 retweets 1 like -
-
Replying to @hdevalence
Because they don't involve everyone on the internet knowing about the vulnerability before a patch is available and a CVE is issued
2 replies 0 retweets 1 like -
Replying to @sgrif @hdevalence
When a vulnerability is made public before a patch is available, it's usually referred to as a zero day and is *very bad*
1 reply 0 retweets 1 like -
Replying to @sgrif
I know what 0day is, and I reject the idea that full disclosure is “improper”.
2 replies 0 retweets 3 likes
Is there something about the word "improper" specifically that you disagree with? Or do you disagree with private security disclosures generally? (This probably comes off as a false dilemma which is not my intent, but I'm not sure how to word this better)
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.