Live data from Hacker News

Google discloses another Windows security issue after deadline exceeded

code.google.com

151–152 of 152 posts

Re: Google discloses another Windows security issue after deadline exceeded

#151

Hopefully this inspires change within Microsoft's development processes. Security issues are a big deal. While 90 days is difficult for them (and other companies), I'm sure with some investment on process improvement and or hiring more staff, they can get these fixes out faster. They owe it to their customers to do the right thing.

Somehow I foresee Microsoft trying to rush out a security patch to a hugely complicated piece of software so it can be distributed to hundreds of millions of devices running countless hardware configurations just to appease Google ending very poorly for everyone but Google's marketing department.

Is it unreasonable to expect a company like Microsoft to be able to release a stable fix to protect their customers within 90 days?

Re: Google discloses another Windows security issue after deadline exceeded

#152
post #116
post #114

Earlier quoted context omitted.

[deleted]

http://en.wikipedia.org/wiki/Zero-day_attack > It is called a "zero-day" because the programmer has had zero days to fix the flaw

Did you read what you just linked? Specifically, the part after the open parenthesis? The bit about the patch not being available?

> It is called a "zero-day" because the programmer has had zero days to fix the flaw (in other words, a patch is not available).

Please try again.

Post reply on HN