37 ms·
I know there was one about a bug bounty researcher finding massive vulnerabilities in a chinese companies drones(link below). They then claimed he went out of s
by Rotdhizon 9y ago
I know there was one about a bug bounty researcher finding massive vulnerabilities in a chinese companies drones(link below). They then claimed he went out of scope(he didn't), and threatened to sue him. A few other cases were reported on zdnet a few months back about some cases like this. Mostly website/product owners leaving their systems vulnerable after being contacted. Months/years later some researchers did a public disclosure and the companies then tried/did take legal action.
https://news.ycombinator.com/item?id=15721268 https://news.ycombinator.com/item?id=15721268
- tptacek 9y agoI summarized this here: https://news.ycombinator.com/item?id=16642155 https://news.ycombinator.com/item?id=16642155 Long story short: they didn't sue him. Their legal demanded that he delete DJI IP and secrets. It wasn't a friendly demand, but that's all it looks like it was.