2 ms·
Not my field but from observation: Other security researchers watch when a CVE/vuln is announced and many have enough experience/knowledge to then know how to r
by codezero 6y ago
Not my field but from observation: Other security researchers watch when a CVE/vuln is announced and many have enough experience/knowledge to then know how to reproduce that vulnerability.
I suspect that the researchers involved all saw how bad it was and didn't feel that it was safe to let Microsoft wait, as (although I don't think it's particularly common) they may drag their feet on a patch. Leaking this vulnerable forces MS's hand sooner. So it's not really necessarily totally off from what I've seen in the past. Just not very common.
This tends to happen when researchers discover the zero day is ALREADY pervasive in the wild.