4 ms·
Just as a security researcher’s job is to find vulnerabilities and promote best practices, it’s not to hack and then publicly shame their employer. Ethics rese
by keypusher 6y ago
Just as a security researcher’s job is to find vulnerabilities and promote best practices, it’s not to hack and then publicly shame their employer. Ethics researchers should be the same, no? Find ethical issues and promote best practices, embarrassing your employer seems counterproductive except perhaps as a last resort.
- joshuamorton 6y agoThis depends. Google project zero routinely discovers vulns in Google products. However they're empowered to fix them, essentially no questions asked. So you don't often get p0 posts about unfixed bugs in Google products.
- 8note 6y agoI imagine that depends on your contract?