Live data from Hacker News

GitHub bans security researcher who posted zero-day Windows exploits

tomshardware.com

21–30 of 274 posts

Re: GitHub bans security researcher who posted zero-day Windows exploits

#21
What's the backstory on this researcher? They seem to have a personal vendetta against Microsoft and thus releasing zero days that he found with the help of AI?

Seems like the gold rush period is over for bounty hunters and its more about who has access to hardware/token capital.

Re: GitHub bans security researcher who posted zero-day Windows exploits

#22
post #18

Earlier quoted context omitted.

I suspect MS threatened them with a SmartScreen blackhole for the domain, I'm not surprised they pulled it.

I don’t like the idea Microsoft can bully other websites into blocking content they don’t like.

Do we have any evidence they did that other than the comment you replied to speculating?

Re: GitHub bans security researcher who posted zero-day Windows exploits

#25
post #11

Also recently: Satya Nadella says as much as 30% of Microslop code is written by AI: https://www.cnbc.com/2025/04/29/satya-nadella-says-as-much-a...

“Recently” this was a year ago - it’s probably more like 95% now

Re: GitHub bans security researcher who posted zero-day Windows exploits

#26
post #11

Also recently: Satya Nadella says as much as 30% of Microslop code is written by AI: https://www.cnbc.com/2025/04/29/satya-nadella-says-as-much-a...

I think you're going down a bad route when you start inserting gratuitous insults into your summaries of what other people said.

Re: GitHub bans security researcher who posted zero-day Windows exploits

#27

What's the backstory on this researcher? They seem to have a personal vendetta against Microsoft and thus releasing zero days that he found with the help of AI? Seems like the gold rush period is over for bounty hunters and its more about who has access to hardware/token capital.

The researcher's own statements note that the zero days were not found with AI.

And honestly I think that's the part that Microsoft is most upset about, because every internal partner conversation I've had has been about needing to buy Security Copilot because all the advanced attacks are coming from AI, and just suggesting vulnerabilities existed before AI seems to make salespeople uncomfortable continuing the conversation.

Re: GitHub bans security researcher who posted zero-day Windows exploits

#28

What's the backstory on this researcher? They seem to have a personal vendetta against Microsoft and thus releasing zero days that he found with the help of AI? Seems like the gold rush period is over for bounty hunters and its more about who has access to hardware/token capital.

> They seem to have a personal vendetta against Microsoft

Probably because they were forced to use MS-DOS when so many better options were killed off by Microsoft's monopolistic and anti-consumer underhanded business tactics...

I might be projecting.

Re: GitHub bans security researcher who posted zero-day Windows exploits

#29

I can’t help but feel Microsoft will regret this. Guy finds zero days and gets no compensation. Instead gets banned. Guy sells zero days elsewhere.

Not to mention all the other people who find 0-days. Reputation matters a lot.

Re: GitHub bans security researcher who posted zero-day Windows exploits

#30

Surely, the public string of exploits means he can find gainful employment from any of the various spooks?

I know quite a few extremely skilled people who aren't employed in a technical field. Usually it's some combination of not working well with others, lack of formal credentials and the means to acquire them, or a criminal record. Government work also means you have to be morally okay with what the government does (or willfully ignorant), able to pass a background check, and be willing to go through the security clearance process.
Post reply on HN