Very important info: https://www.theregister.com/security/2026/05/28/microsoft-0-... In the linked Microsoft blog post, they say : > The details of these vulnerabilities were not shared with Microsoft prior to release, and the disclosures put our customers at unnecessary risk. So are they lying ? Why would Nightmare-Eclipse not report them if they are not ? It's a very weird situation
Re: GitHub bans security researcher who posted zero-day Windows exploits
#271Contrary to popular belief, it is NOT anyone's obligation to do free work for megacorps. If anyone is testing MS products for free, or reporting bugs for free, that's a gracious favor, nothing more.