• Jason2357@lemmy.ca
    link
    fedilink
    English
    arrow-up
    3
    ·
    2 days ago

    That’s the difference between a security researcher who gives, and does not give a shit about peoples security.

    The grace period is to protect people by giving the company time to send out patches. At 1 month, they publish the exploit to shame the company and get the cred either way.