3 ms·
I don't think it's only popular in news. I work on a web platform team, and I've seen many vulnerability reports over the years (well over 100). I've never see
by MikeHolman 7y ago
I don't think it's only popular in news.
I work on a web platform team, and I've seen many vulnerability reports over the years (well over 100). I've never seen a report from the NSA or US government. Actually, the only government I've seen reports from are the UK, so credit to them for actually doing something to keep people secure. But most reports I see are from project zero or Chinese companies.
Either the US government doesn't care at all about browser security or they are keeping vulnerabilities for themselves.
- elcomet 7y agoFrench gov (CERT-FR and ANSII) made recommendations about heartbleed.
- blackflame7000 7y agoNo, the US government has taken the position that it’s always best to have a few tricks up your sleeve when the chips are down. It is most certainly intentional stock piling of zero days for strategic advantage.