• VitoRobles@lemmy.today
    link
    fedilink
    English
    arrow-up
    45
    ·
    9 hours ago

    This is not surprising.

    The industry knowledge had by the thousands of engineers laid off has to go somewhere.

    • calcopiritus@lemmy.world
      link
      fedilink
      English
      arrow-up
      34
      ·
      7 hours ago

      This is not about that. This is about a security researcher that wasn’t paid by Microsoft’s bug bounty program when they found a security bug.

      Bug bounty programs exist to prevent this exact scenario. To give people a reward for privately disclosing the vulnerability with the devs instead of publicly/to a bad actor.

      • Rothe@piefed.social
        link
        fedilink
        English
        arrow-up
        3
        ·
        2 hours ago

        AMD fucked up recently about that as well. It seems big tech is getting so arrogant and so far up its own ass that they can’t even admit to bugs anymore, which is problematic considering their sloppy AI slop never had so many bugs as it does now.

    • slazer2au@lemmy.world
      link
      fedilink
      English
      arrow-up
      38
      ·
      7 hours ago

      Well when you report a bug to ms and they respond with disabing your account and you then release the 0day the ms responds with a public blog post saying people who release 0 days are breaking the law and liable for legal action of cause you then drop a second 0day and ms responds by retracing the legal threat so you you now drop a third one while your account to report these bugs is still disabled. What else would you do?