Hacker News
new
past
comments
ask
show
jobs
points
by
0x0
16 hours ago
|
comments
by
tptacek
16 hours ago
|
next
[-]
There is no one accepted set of norms on disclosure. Any strategy you take, someone will criticize.
reply
by
akerl_
16 hours ago
|
prev
|
next
[-]
I don’t know if “cool” is the word I’d use, but there isn’t an established “right” way to disclose a vulnerability that you found outside of a contracted security review or other employment/contracting arrangement.
reply
by
john_strinlai
14 hours ago
|
prev
|
[-]
mainline was patched a month ago
reply