Google researcher Tavis Ormandy’s public disclosure Thursday of a security flaw in Microsoft’s Help and Support Center has drawn harsh criticism from Redmond. The flaw, which exists in Windows XP and Windows Server 2003, could let hackers remotely execute code on victims’ computers. Microsoft is angry that Ormandy publicly disclosed a proof of concept exploit of the flaw just four days after privately notifying the company of the flaw’s existence. Ormandy posted his findings and the proof of concept exploit of the Help and Support Center flaw on the Full Disclosure website Thursday.
Really? Not enough time to respond? Too big to catch all the bugs?
Windows XP was released 9 years ago. How long does it take to catch and fix these bugs and why do we keep hearing about outsiders catching them and not Microsoft itself?
Too big to catch all the bugs? What??? If it were a small company with limited resources trying to do it that would make sense. Let's see...hmmm
You have t wonder if some of these Googler's are just like Apple fanboys and are only loyal to their own. I think its appalling that Mr. Ormandy did this and Google should be embarrassed by his actions.
Quick-Draw Google Guy Put XP Users at Risk, Fumes Microsoft
Posted by: Richard Adhikari June 11, 2010 11:57 AMGoogle researcher Tavis Ormandy’s public disclosure Thursday of a security flaw in Microsoft’s Help and Support Center has drawn harsh criticism from Redmond. The flaw, which exists in Windows XP and Windows Server 2003, could let hackers remotely execute code on victims’ computers. Microsoft is angry that Ormandy publicly disclosed a proof of concept exploit of the flaw just four days after privately notifying the company of the flaw’s existence. Ormandy posted his findings and the proof of concept exploit of the Help and Support Center flaw on the Full Disclosure website Thursday.
Windows XP was released 9 years ago. How long does it take to catch and fix these bugs and why do we keep hearing about outsiders catching them and not Microsoft itself?
Too big to catch all the bugs? What??? If it were a small company with limited resources trying to do it that would make sense. Let's see...hmmm