|
@benhawkes | |||||
|
Project Zero Policy and Disclosure: 2020 Edition -- googleprojectzero.blogspot.com/2020/01/policy…
|
||||||
|
||||||
|
Jacob Baines
@Junior_Baines
|
7. sij |
|
I thought part of disclosure at patch time was to ensure everyone has access to the vulnerability information. Is there any concern with the subset of people doing patch analysis knowing more than everyone else?
|
||
|
|
||
|
Ben Hawkes
@benhawkes
|
7. sij |
|
Great question, I'm definitely concerned about it and it was a big part of our discussions. Talking to a lot of vendors, they're generally aware of this type of analysis, but it wasn't always the biggest factor in terms of motivating them to improve patch speed/quality/adoption.
|
||
|
|
||