you are viewing a single comment's thread
view the rest of the comments
[–] 11 points 4 months ago (5 children)

If she's going for maximum damage, I am surprised this person doesn't just announce when she's found a big exploit, and then just sell it to up to 10 people, and then announce in very vague terms what the exploits are. (Like, "just sold exploit for windows defender" or "just sold way to hack into bitlocker").

It seems like the vagueness of such things would make corporations more worried about being hacked and Microsoft could only guess as to what specific code was hacked, costing them greater resources.

Yes, it would be illegal, and therefore I hope she doesn't do that and recommend against it. But I am just surprised, given the level of anger, that she has been approaching things in a way that is so easy to patch.

Is her approach more damaging the way she's actually doing it?

  • source
  • hideshow 5 child comments
  • [–] 1 point 4 months ago (3 children)

    Its a fine line between getting revenge on Microsoft and screwing over human beings that trusted them. I wouldn't be surprised if a bitlocker zero day got someone killed, given the number of people using it around the world.

  • source
  • parent
  • hideshow 3 child comments
  • [–] 3 points 4 months ago (2 children)

    I wouldn't be surprised if a bitlocker zero day got someone killed

    How would it get someone killed?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 4 months ago

    Image a dissidents hard drive and break into it later when an exploit drops. Selling to an exploit broker is even worse sense the individual would never know how or if a government intelligence agency got all their personal data because they expect it do be secured.

  • source
  • parent
  • load more comments (1 reply)
  • load more comments (1 reply)
  • load more comments (2 replies)